CVE-2022-26319
08.03.2022, 22:15
An installer search patch element vulnerability in Trend Micro Portable Security 3.0 Pro, 3.0 and 2.0 could allow a local attacker to place an arbitrarily generated DLL file in an installer folder to elevate local privileges. Please note: an attacker must first obtain the ability to execute high-privileged code on the target system in order to exploit this vulnerability.Enginsight
| Vendor | Product | Version |
|---|---|---|
| trendmicro | portable_security | 2.0 ≤ 𝑥 < 2.0.8056 |
| trendmicro | portable_security | 3.0 ≤ 𝑥 < 3.0.5054 |
| trendmicro | portable_security | 3.0 ≤ 𝑥 < 3.0.5054 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration