HIGH🇵🇱 Wersja polska

CVE-2022-28394

CVSS 7.8v3.1pub. 2022-05-27upd. 2024-11-21

EOL Product CVE - Installer of Trend Micro Password Manager (Consumer) versions 3.7.0.1223 and below provided by Trend Micro Incorporated contains an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries (CWE-427). Please note that this was reported on an EOL version of the product, and users are advised to upgrade to the latest supported version (5.x).

CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
  • Trendmicro Password Manager

    APP
    Trendmicro
    < 3.7.0.1223
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2016-3987CRITICAL9.8PL ✓same product

RCE w Trend Micro Password Manager poprzez parametr URL w serwerze HTTP

CVE-2025-52837HIGH7.8same product

Trend Micro Password Manager (Consumer) version 5.8.0.1327 and below is vulnerable to a Link Following Privile...

CVE-2022-30523HIGH7.8same product

Trend Micro Password Manager (Consumer) version 5.0.0.1266 and below is vulnerable to a Link Following Privile...

CVE-2022-26337HIGH7.8same product

Trend Micro Password Manager (Consumer) installer version 5.0.0.1262 and below is vulnerable to an Uncontrolle...

CVE-2021-32461HIGH7.8same product

Trend Micro Password Manager (Consumer) version 5.0.0.1217 and below is vulnerable to an Integer Truncation Pr...