Home

Description

Trend Micro Password Manager (Consumer) version 5.0.0.1266 and below is vulnerable to a Link Following Local Privilege Escalation Vulnerability that could allow a local attacker to leverage this vulnerability to delete files in the context of an administrator when the administrator installs Trend Micro Password Manager.

PUBLISHED Reserved 2025-05-21 | Published 2025-06-17 | Updated 2025-06-18 | Assigner trendmicro




MEDIUM: 6.7CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

Problem types

CWE-64: Windows Shortcut Following

Product status

5.0 (semver) before 5.8.0.1330
affected

References

helpcenter.trendmicro.com/en-us/article/TMKA-12917

www.zerodayinitiative.com/advisories/ZDI-25-361/

cve.org (CVE-2025-48443)

nvd.nist.gov (CVE-2025-48443)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.