CVE-2021-44023

Severity CVSS v4.0:
Pending analysis
Type:
CWE-59 Link Following
Publication date:
16/12/2021
Last modified:
20/12/2021

Description

A link following denial-of-service (DoS) vulnerability in the Trend Micro Security (Consumer) 2021 familiy of products could allow an attacker to abuse the PC Health Checkup feature of the product to create symlinks that would allow modification of files which could lead to a denial-of-service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:trendmicro:antivirus\+_security_2021:*:*:*:*:*:*:*:* 17.0 (including)
cpe:2.3:a:trendmicro:internet_security_2021:*:*:*:*:*:*:*:* 17.0 (including)
cpe:2.3:a:trendmicro:maximum_security_2021:*:*:*:*:*:*:*:* 17.0 (including)
cpe:2.3:a:trendmicro:premium_security_2021:*:*:*:*:*:*:*:* 17.0 (including)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*