CVE-2022-30523

Severity CVSS v4.0:
Pending analysis
Type:
CWE-59 Link Following
Publication date:
16/05/2022
Last modified:
25/05/2022

Description

Trend Micro Password Manager (Consumer) version 5.0.0.1266 and below is vulnerable to a Link Following Privilege Escalation Vulnerability that could allow a low privileged local attacker to delete the contents of an arbitrary folder as SYSTEM which can then be used for privilege escalation on the affected machine.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:trendmicro:password_manager:*:*:*:*:*:windows:*:* 5.0.0.1270 (excluding)