ZDI-CAN-14587: Trend Micro Maximum Security Link Following Denial-of-Service Vulnerability
This vulnerability allows local attackers to create a denial-of-service condition on affected installations of Trend Micro Maximum Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the Platinum Host Service. By creating a symbolic link, an attacker can abuse the service to overwrite a file. An attacker can leverage this vulnerability to create a denial-of-service condition on the system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-14587?
ZDI-CAN-14587 has a severity rating that indicates a high potential for denial-of-service impacts on affected systems.
How do I fix ZDI-CAN-14587?
To fix ZDI-CAN-14587, update to the latest version of Trend Micro Maximum Security that addresses the vulnerability.
Who is affected by ZDI-CAN-14587?
ZDI-CAN-14587 affects installations of Trend Micro Maximum Security 2022.
Can ZDI-CAN-14587 be exploited remotely?
No, ZDI-CAN-14587 requires an attacker to have local access to the system to exploit the vulnerability.
What are the potential impacts of ZDI-CAN-14587?
The potential impact of ZDI-CAN-14587 includes creating a denial-of-service condition that disrupts the functionality of the software.