VulnerabilityModified
CVE-2019-15625
A memory usage vulnerability exists in Trend Micro Password Manager 3.8 that could allow an attacker with access and permissions to the victim's memory processes to extract sensitive information.
MEDIUM 5.5EPSS 0.98%
Does this matter?
Lower severity and a low EPSS score (0.98%). Track it; it rarely justifies an emergency change on its own.
Description
A memory usage vulnerability exists in Trend Micro Password Manager 3.8 that could allow an attacker with access and permissions to the victim's memory processes to extract sensitive information.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 0.98% probability · 60th percentile
- CISA KEV
- Not listed
- Affected
- trendmicro/password manager
- Source
- security@trendmicro.com
References
- https://esupport.trendmicro.com/en-us/home/pages/technical-support/1123595.aspxVendor Advisory
- https://esupport.trendmicro.com/support/pwm/solution/ja-jp/1123614.aspxVendor Advisory
- https://jvn.jp/en/jp/JVN49593434/index.htmlThird Party Advisory
- https://jvn.jp/jp/JVN49593434/index.htmlThird Party Advisory
- https://esupport.trendmicro.com/en-us/home/pages/technical-support/1123595.aspxVendor Advisory
- https://esupport.trendmicro.com/support/pwm/solution/ja-jp/1123614.aspxVendor Advisory
- https://jvn.jp/en/jp/JVN49593434/index.htmlThird Party Advisory
- https://jvn.jp/jp/JVN49593434/index.htmlThird Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.