Trend Micro Password Manager (Consumer) version 5.0.0.1217 and below is vulnerable to an Exposed Hazardous Function Remote Code Execution vulnerability which could allow an unprivileged client to manipulate the registry and escalate privileges to SYSTEM on affected installations. Authentication is required to exploit this vulnerability.
References
Link | Resource |
---|---|
https://www.zerodayinitiative.com/advisories/ZDI-21-774/ | Third Party Advisory VDB Entry |
https://helpcenter.trendmicro.com/en-us/article/TMKA-10388 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2021-07-08 04:15
Updated : 2021-07-23 12:58
NVD link : CVE-2021-32462
Mitre link : CVE-2021-32462
JSON object : View
CWE
Products Affected
trendmicro
- password_manager
microsoft
- windows