ZeroHour

CVE-2024-23940

PoC
CVSS 3.1
7.8 high
EPSS
<1%p49
Published
()
Modified
Description

Trend Micro uiAirSupport, included in the Trend Micro Security 2023 family of consumer products, version 6.0.2092 and below is vulnerable to a DLL hijacking/proxying vulnerability, which if exploited could allow an attacker to impersonate and modify a library to execute code on the system and ultimately escalate privileges on an affected system.

Vendors
trendmicro
Products
air support, antivirus \+ security, internet security, maximum security, premium security
Weakness
CWE-427
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.