CVE-2023-28929: High severity trend micro antivirus+ security 2021 vulnerability
Trend Micro Security 2021, 2022, and 2023 (Consumer) are vulnerable to a DLL Hijacking vulnerability which could allow an attacker to use a specific executable file as an execution and/or persistence mechanism which could execute a malicious program each time the executable file is started.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-28929?
CVE-2023-28929 is a DLL Hijacking vulnerability in Trend Micro Security 2021, 2022, and 2023 (Consumer) that could allow an attacker to execute a malicious program.
How severe is CVE-2023-28929?
CVE-2023-28929 has a severity rating of 7.8 (high).
Which software versions are affected by CVE-2023-28929?
Trend Micro Security 2021, 2022, and 2023 (Consumer) versions up to and including 17.7.1476 are affected by CVE-2023-28929.
How can an attacker exploit CVE-2023-28929?
An attacker can exploit CVE-2023-28929 by using a specific executable file as an execution and/or persistence mechanism to execute a malicious program each time the executable file is started.
How can I fix CVE-2023-28929?
To fix CVE-2023-28929, update Trend Micro Security 2021, 2022, and 2023 (Consumer) to version 17.7.1477 or later.