PT-2020-10223 · Trend Micro · Trend Micro Security 2019
Hyp3Rlinx
+1
·
Published
2020-01-17
·
Updated
2020-08-24
·
CVE-2019-19697
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Trend Micro Security 2019 version 15
Description
The issue allows an attacker to execute arbitrary code, potentially gaining elevated privileges and tampering with protected services by preventing them from starting. This can be achieved by disabling the services. It is noted that an attacker must already have administrator privileges on the target machine to exploit this issue.
Recommendations
For Trend Micro Security 2019 version 15, consider restricting access to protected services to minimize the risk of exploitation until a fix is available. As a temporary workaround, avoid disabling or modifying protected services to prevent potential tampering. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Trend Micro Security 2019