CVE-2022-30523
Severity CVSS v4.0:
Pending analysis
Type:
CWE-59
Link Following
Publication date:
16/05/2022
Last modified:
25/05/2022
Description
Trend Micro Password Manager (Consumer) version 5.0.0.1266 and below is vulnerable to a Link Following Privilege Escalation Vulnerability that could allow a low privileged local attacker to delete the contents of an arbitrary folder as SYSTEM which can then be used for privilege escalation on the affected machine.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Base Score 2.0
7.20
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:trendmicro:password_manager:*:*:*:*:*:windows:*:* | 5.0.0.1270 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



