CVE-2023-28929

Trend Micro Security 2021, 2022, and 2023 (Consumer) are vulnerable to a DLL Hijacking vulnerability which could allow an attacker to use a specific executable file as an execution and/or persistence mechanism which could execute a malicious program each time the executable file is started.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
trendmicroCNA
---
---
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 13%
VendorProductVersion
trend_micro_inctrend_micro_security
17.7.1634 <
𝑥
< 17.7.1634
trendmicroantivirus\+_security_2021
𝑥
≤ 17.0.1412
trendmicrointernet_security_2021
𝑥
≤ 17.0.1412
trendmicromaximum_security_2021
𝑥
≤ 17.0.1412
trendmicropremium_security_2021
𝑥
≤ 17.0.1412
trendmicroantivirus\+_security_2022
𝑥
≤ 17.7.1476
trendmicrointernet_security_2022
𝑥
≤ 17.7.1476
trendmicromaximum_security_2022
𝑥
≤ 17.7.1476
trendmicropremium_security_2022
𝑥
≤ 17.7.1476
trendmicroantivirus\+_security_2023
𝑥
≤ 17.7.1476
trendmicrointernet_security_2023
𝑥
≤ 17.7.1476
trendmicromaximum_security_2023
𝑥
≤ 17.7.1476
trendmicropremium_security_2023
𝑥
≤ 17.7.1476
𝑥
= Vulnerable software versions