CVE-2021-25251

The Trend Micro Security 2020 and 2021 families of consumer products are vulnerable to a code injection vulnerability which could allow an attacker to disable the program's password protection and disable protection. An attacker must already have administrator privileges on the machine to exploit this vulnerability.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.2 HIGH
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
trendmicroCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 74%
VendorProductVersion
trendmicroantivirus\+_security_2020
16.0
trendmicroantivirus\+_security_2021
17.0
trendmicrointernet_security_2020
16.0
trendmicrointernet_security_2021
17.0
trendmicromaximum_security_2020
16.0
trendmicromaximum_security_2021
17.0
trendmicropremium_security_2020
16.0
trendmicropremium_security_2021
17.0
𝑥
= Vulnerable software versions