CVE-2022-28339

Severity CVSS v4.0:
Pending analysis
Type:
CWE-427 Uncontrolled Search Path Element
Publication date:
22/02/2025
Last modified:
29/07/2025

Description

Trend Micro HouseCall for Home Networks version 5.3.1302 and below contains an uncontrolled search patch element vulnerability that could allow an attacker with low user privileges to create a malicious DLL that could lead to escalated privileges.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:trendmicro:housecall_for_home_networks:*:*:*:*:*:*:*:* 5.3.1308 (excluding)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*