PT-2020-10223 · Trend Micro · Trend Micro Security 2019

Hyp3Rlinx

+1

·

Published

2020-01-17

·

Updated

2020-08-24

·

CVE-2019-19697

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Trend Micro Security 2019 version 15
Description The issue allows an attacker to execute arbitrary code, potentially gaining elevated privileges and tampering with protected services by preventing them from starting. This can be achieved by disabling the services. It is noted that an attacker must already have administrator privileges on the target machine to exploit this issue.
Recommendations For Trend Micro Security 2019 version 15, consider restricting access to protected services to minimize the risk of exploitation until a fix is available. As a temporary workaround, avoid disabling or modifying protected services to prevent potential tampering. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2019-19697

Affected Products

Trend Micro Security 2019