CVE-2019-19694
The Trend Micro Security 2019 (15.0.0.1163 and below) consumer family of products is vulnerable to a denial of service (DoS) attack in which a malicious actor could manipulate a key file at a certain time during the system startup process to disable the…
Does this matter?
Lower severity and a low EPSS score (0.36%). Track it; it rarely justifies an emergency change on its own.
Description
The Trend Micro Security 2019 (15.0.0.1163 and below) consumer family of products is vulnerable to a denial of service (DoS) attack in which a malicious actor could manipulate a key file at a certain time during the system startup process to disable the product's malware protection functions or the entire product completely..
- CVSS 3.1
- 4.7 MEDIUMCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.36% probability · 30th percentile
- CISA KEV
- Not listed
- Affected
- trendmicro/antivirus \+ security 2019 · trendmicro/internet security 2019 · trendmicro/maximum security 2019 · trendmicro/officescan cloud · trendmicro/premium security 2019
- Source
- security@trendmicro.com
References
- https://esupport.trendmicro.com/en-us/home/pages/technical-support/1124056.aspxVendor Advisory
- https://esupport.trendmicro.com/support/vb/solution/ja-jp/1124058.aspxVendor Advisory
- https://jvn.jp/en/jp/JVN02921757/Third Party Advisory
- https://jvn.jp/jp/JVN02921757/Third Party Advisory
- https://esupport.trendmicro.com/en-us/home/pages/technical-support/1124056.aspxVendor Advisory
- https://esupport.trendmicro.com/support/vb/solution/ja-jp/1124058.aspxVendor Advisory
- https://jvn.jp/en/jp/JVN02921757/Third Party Advisory
- https://jvn.jp/jp/JVN02921757/Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.