CVE-2021-28647

Trend Micro Password Manager version 5 (Consumer) is vulnerable to a DLL Hijacking vulnerability which could allow an attacker to inject a malicious DLL file during the installation progress and could execute a malicious program each time a user installs a program.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:trendmicro:password_manager:*:*:*:*:*:windows:*:*

History

14 Apr 2021, 21:07

Type Values Removed Values Added
CWE CWE-427
References (N/A) https://helpcenter.trendmicro.com/en-us/article/TMKA-10282 - (N/A) https://helpcenter.trendmicro.com/en-us/article/TMKA-10282 - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 4.4
v3 : 7.8
CPE cpe:2.3:a:trendmicro:password_manager:*:*:*:*:*:windows:*:*

13 Apr 2021, 13:21

Type Values Removed Values Added
New CVE

Information

Published : 2021-04-13 13:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-28647

Mitre link : CVE-2021-28647

CVE.ORG link : CVE-2021-28647


JSON object : View

Products Affected

trendmicro

  • password_manager
CWE
CWE-427

Uncontrolled Search Path Element