CVE-2019-19697
Summary
| CVE | CVE-2019-19697 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-01-18 00:15:00 UTC |
| Updated | 2020-08-24 17:37:00 UTC |
| Description | An arbitrary code execution vulnerability exists in the Trend Micro Security 2019 (v15) consumer family of products which could allow an attacker to gain elevated privileges and tamper with protected services by disabling or otherwise preventing them to start. An attacker must already have administrator privileges on the target machine in order to exploit the vulnerability. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Microsoft | Windows | - | All | All | All |
| Operating System | Microsoft | Windows | - | All | All | All |
| Application | Trendmicro | Antivirus Security 2019 | 15.0 | All | All | All |
| Application | Trendmicro | Antivirus Security 2019 | 15.0 | All | All | All |
| Application | Trendmicro | Antivirus Security 2019 | 15.0 | All | All | All |
| Application | Trendmicro | Internet Security 2019 | 15.0 | All | All | All |
| Application | Trendmicro | Internet Security 2019 | 15.0 | All | All | All |
| Application | Trendmicro | Maximum Security 2019 | 15.0 | All | All | All |
| Application | Trendmicro | Maximum Security 2019 | 15.0 | All | All | All |
| Application | Trendmicro | Premium Security 2019 | 15.0 | All | All | All |
| Application | Trendmicro | Premium Security 2019 | 15.0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Home and Home Office Support | Trend Micro | MISC | esupport.trendmicro.com | Vendor Advisory |
| hyp3rlinx.altervista.org/advisories/TREND-MICRO-SECURITY-CONSUMER-SECURITY-BYPASS-PROT... | MISC | hyp3rlinx.altervista.org | Exploit, Third Party Advisory |
| Bugtraq: Trend Micro Security 2019 (Consumer) Multiple Products Security Bypass Protected Service Tampering CVE-2019-19697 | BUGTRAQ | seclists.org | Exploit, Mailing List, Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.