Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-28394

Опубликовано: 27 мая 2022
Источник: nvd
CVSS3: 7.8
CVSS2: 6.9
EPSS Низкий

Описание

EOL Product CVE - Installer of Trend Micro Password Manager (Consumer) versions 3.7.0.1223 and below provided by Trend Micro Incorporated contains an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries (CWE-427). Please note that this was reported on an EOL version of the product, and users are advised to upgrade to the latest supported version (5.x).

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:trendmicro:password_manager:*:*:*:*:*:windows:*:*
Версия до 3.7.0.1223 (исключая)

EPSS

Процентиль: 26%
0.00087
Низкий

7.8 High

CVSS3

6.9 Medium

CVSS2

Дефекты

CWE-427

Связанные уязвимости

CVSS3: 7.8
github
больше 3 лет назад

EOL Product CVE - Installer of Trend Micro Password Manager (Consumer) versions 3.7.0.1223 and below provided by Trend Micro Incorporated contains an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries (CWE-427). Please note that this was reported on an EOL version of the product, and users are advised to upgrade to the latest supported version (5.x).

EPSS

Процентиль: 26%
0.00087
Низкий

7.8 High

CVSS3

6.9 Medium

CVSS2

Дефекты

CWE-427