Trend Micro Security 2020 (Consumer) contains a vulnerability in the installer package that could be exploited by placing a malicious DLL in a non-protected location with high privileges (symlink attack) which can lead to obtaining administrative privileges during the installation of the product.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-20201 Trend Micro Security 2020 (Consumer) contains a vulnerability in the installer package that could be exploited by placing a malicious DLL in a non-protected location with high privileges (symlink attack) which can lead to obtaining administrative privileges during the installation of the product.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: trendmicro

Published:

Updated: 2024-08-04T16:18:45.678Z

Reserved: 2020-10-26T00:00:00

Link: CVE-2020-27697

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-11-18T19:15:11.460

Modified: 2024-11-21T05:21:40.507

Link: CVE-2020-27697

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.