PT-2019-13782 · Trend Micro · Trend Micro Security+1

Published

2019-08-21

·

Updated

2021-07-21

·

CVE-2019-14686

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Trend Micro Security versions 15 Trend Micro Ransom Buster version 1.0
Description A DLL hijacking issue exists in the Folder Shield component and the standalone Trend Micro Ransom Buster tool. This issue could allow an attacker to load a malicious DLL, resulting in elevated privileges.
Recommendations For Trend Micro Security version 15, update the Folder Shield component to prevent DLL hijacking. For Trend Micro Ransom Buster version 1.0, consider disabling the vulnerable component until a patch is available.

Fix

Uncontrolled Search Path Element

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-14686

Affected Products

Trend Micro Ransom Buster
Trend Micro Security