PT-2019-13782 · Trend Micro · Trend Micro Security+1
Published
2019-08-21
·
Updated
2021-07-21
·
CVE-2019-14686
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Trend Micro Security versions 15
Trend Micro Ransom Buster version 1.0
Description
A DLL hijacking issue exists in the Folder Shield component and the standalone Trend Micro Ransom Buster tool. This issue could allow an attacker to load a malicious DLL, resulting in elevated privileges.
Recommendations
For Trend Micro Security version 15, update the Folder Shield component to prevent DLL hijacking.
For Trend Micro Ransom Buster version 1.0, consider disabling the vulnerable component until a patch is available.
Fix
Uncontrolled Search Path Element
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Trend Micro Ransom Buster
Trend Micro Security