Trend Micro Password Manager (Consumer) version 5.0.0.1217 and below is vulnerable to an Exposed Hazardous Function Remote Code Execution vulnerability which could allow an unprivileged client to manipulate the registry and escalate privileges to SYSTEM on affected installations. Authentication is required to exploit this vulnerability.
References
Link | Resource |
---|---|
https://helpcenter.trendmicro.com/en-us/article/TMKA-10388 | Vendor Advisory |
https://www.zerodayinitiative.com/advisories/ZDI-21-774/ | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2021-07-08 11:15
Updated : 2021-07-23 19:58
NVD link : CVE-2021-32462
Mitre link : CVE-2021-32462
CVE.ORG link : CVE-2021-32462
JSON object : View
Products Affected
microsoft
- windows
trendmicro
- password_manager
CWE