Trend Micro HouseCall for Home Networks version 5.3.1302 and below contains an uncontrolled search patch element vulnerability that could allow an attacker with low user privileges to create a malicious DLL that could lead to escalated privileges.
History

Mon, 24 Feb 2025 13:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-427
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Sat, 22 Feb 2025 21:00:00 +0000

Type Values Removed Values Added
Description Trend Micro HouseCall for Home Networks version 5.3.1302 and below contains an uncontrolled search patch element vulnerability that could allow an attacker with low user privileges to create a malicious DLL that could lead to escalated privileges.
References
Metrics cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: trendmicro

Published:

Updated: 2025-02-24T12:25:17.568Z

Reserved: 2022-04-01T18:07:44.461Z

Link: CVE-2022-28339

cve-icon Vulnrichment

Updated: 2025-02-24T12:25:09.129Z

cve-icon NVD

Status : Received

Published: 2025-02-22T21:15:34.723

Modified: 2025-02-24T13:15:09.560

Link: CVE-2022-28339

cve-icon Redhat

No data.