CVE-2022-28339 – Trend Micro HouseCall DLL Escalation Vulnerability

The following table lists the changes that have been made to the
CVE-2022-28339 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by [email protected]

    Feb. 22, 2025

    Action Type Old Value New Value
    Added Description Trend Micro HouseCall for Home Networks version 5.3.1302 and below contains an uncontrolled search patch element vulnerability that could allow an attacker with low user privileges to create a malicious DLL that could lead to escalated privileges.
    Added CVSS V3.1 AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
    Added Reference https://helpcenter.trendmicro.com/en-us/article/tmka-21734
    Added Reference https://www.zerodayinitiative.com/advisories/ZDI-22-620/
Share the Post:

Related Posts