Vulnerability Details CVE-2022-30523
Trend Micro Password Manager (Consumer) version 5.0.0.1266 and below is vulnerable to a Link Following Privilege Escalation Vulnerability that could allow a low privileged local attacker to delete the contents of an arbitrary folder as SYSTEM which can then be used for privilege escalation on the affected machine.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 11.6%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 7.2
Products affected by CVE-2022-30523
-
cpe:2.3:a:trendmicro:password_manager:3.7.0.1223
-
cpe:2.3:a:trendmicro:password_manager:3.8.0.1103
-
cpe:2.3:a:trendmicro:password_manager:5.0
-
cpe:2.3:a:trendmicro:password_manager:5.0.0.1076
-
cpe:2.3:a:trendmicro:password_manager:5.0.0.1081
-
cpe:2.3:a:trendmicro:password_manager:5.0.0.1217
-
cpe:2.3:a:trendmicro:password_manager:5.0.0.1266