CVE-2022-28394

EOL Product CVE - Installer of Trend Micro Password Manager (Consumer) versions 3.7.0.1223 and below provided by Trend Micro Incorporated contains an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries (CWE-427). Please note that this was reported on an EOL version of the product, and users are advised to upgrade to the latest supported version (5.x).
Configurations

Configuration 1 (hide)

cpe:2.3:a:trendmicro:password_manager:*:*:*:*:*:windows:*:*

History

21 Nov 2024, 06:57

Type Values Removed Values Added
References () https://helpcenter.trendmicro.com/ja-jp/article/TMKA-10977 - Vendor Advisory () https://helpcenter.trendmicro.com/ja-jp/article/TMKA-10977 - Vendor Advisory
References () https://jvn.jp/en/jp/JVN60037444/ - Third Party Advisory () https://jvn.jp/en/jp/JVN60037444/ - Third Party Advisory
References () https://jvn.jp/jp/JVN60037444/ - Third Party Advisory () https://jvn.jp/jp/JVN60037444/ - Third Party Advisory

Information

Published : 2022-05-27 00:15

Updated : 2024-11-21 06:57


NVD link : CVE-2022-28394

Mitre link : CVE-2022-28394

CVE.ORG link : CVE-2022-28394


JSON object : View

Products Affected

trendmicro

  • password_manager
CWE
CWE-427

Uncontrolled Search Path Element