Trend Micro Security (Consumer) 2020 (v16.0.1221 and below) is affected by a DLL hijacking vulnerability that could allow an attacker to use a specific service as an execution and/or persistence mechanism which could execute a malicious program each time the service is started.
References
Link | Resource |
---|---|
https://esupport.trendmicro.com/en-us/home/pages/technical-support/1124011.aspx | Vendor Advisory |
https://safebreach.com/Post/Trend-Micro-Security-16-DLL-Search-Order-Hijacking-and-Potential-Abuses-CVE-2019-15628 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: trendmicro
Published: 2019-12-02T15:45:14
Updated: 2019-12-02T15:45:14
Reserved: 2019-08-26T00:00:00
Link: CVE-2019-15628
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-12-02T16:15:12.127
Modified: 2019-12-13T19:50:22.973
Link: CVE-2019-15628
JSON object: View
Redhat Information
No data.
CWE