ZeroHour

CVE-2019-14684

PoC
CVSS 3.0
7.8 high
EPSS
1%p72
Published
()
Modified
Description

A DLL hijacking vulnerability exists in Trend Micro Password Manager 5.0 in which, if exploited, would allow an attacker to load an arbitrary unsigned DLL into the signed service's process. This process is very similar, yet not identical to CVE-2019-14687.

Vendors
trendmicro
Products
password manager
Weakness
CWE-427
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news