CVE-2019-9491

Severity CVSS v4.0:
Pending analysis
Type:
CWE-427 Uncontrolled Search Path Element
Publication date:
21/10/2019
Last modified:
07/11/2023

Description

Trend Micro Anti-Threat Toolkit (ATTK) versions 1.62.0.1218 and below have a vulnerability that may allow an attacker to place malicious files in the same directory, potentially leading to arbitrary remote code execution (RCE) when executed.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:trendmicro:anti-threat_toolkit:*:*:*:*:*:*:*:* 1.62.0.1218 (including)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*