Vulnerability Description
A memory usage vulnerability exists in Trend Micro Password Manager 3.8 that could allow an attacker with access and permissions to the victim's memory processes to extract sensitive information.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Trendmicro | Password Manager | >= 3.8, <= 3.8.0.1052 |
References
- https://esupport.trendmicro.com/en-us/home/pages/technical-support/1123595.aspxVendor Advisory
- https://esupport.trendmicro.com/support/pwm/solution/ja-jp/1123614.aspxVendor Advisory
- https://jvn.jp/en/jp/JVN49593434/index.htmlThird Party Advisory
- https://jvn.jp/jp/JVN49593434/index.htmlThird Party Advisory
- https://esupport.trendmicro.com/en-us/home/pages/technical-support/1123595.aspxVendor Advisory
- https://esupport.trendmicro.com/support/pwm/solution/ja-jp/1123614.aspxVendor Advisory
- https://jvn.jp/en/jp/JVN49593434/index.htmlThird Party Advisory
- https://jvn.jp/jp/JVN49593434/index.htmlThird Party Advisory
FAQ
What is CVE-2019-15625?
CVE-2019-15625 is a vulnerability with a CVSS score of 5.5 (MEDIUM). A memory usage vulnerability exists in Trend Micro Password Manager 3.8 that could allow an attacker with access and permissions to the victim's memory processes to extract sensitive information.
How severe is CVE-2019-15625?
CVE-2019-15625 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-15625?
Check the references section above for vendor advisories and patch information. Affected products include: Trendmicro Password Manager.