2024-01-24 02:00:34 +00:00
{
2024-01-29 19:00:31 +00:00
"data_version" : "4.0" ,
2024-01-24 02:00:34 +00:00
"data_type" : "CVE" ,
"data_format" : "MITRE" ,
"CVE_data_meta" : {
"ID" : "CVE-2024-23940" ,
2024-01-29 19:00:31 +00:00
"ASSIGNER" : "security@trendmicro.com" ,
"STATE" : "PUBLIC"
2024-01-24 02:00:34 +00:00
} ,
"description" : {
"description_data" : [
{
"lang" : "eng" ,
2024-01-29 19:00:31 +00:00
"value" : "Trend Micro uiAirSupport, included in the Trend Micro Security 2023 family of consumer products, version 6.0.2092 and below is vulnerable to a DLL hijacking/proxying vulnerability, which if exploited could allow an attacker to impersonate and modify a library to execute code on the system and ultimately escalate privileges on an affected system."
}
]
} ,
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng" ,
"value" : "n/a"
}
]
}
]
} ,
"affects" : {
"vendor" : {
"vendor_data" : [
{
"vendor_name" : "Trend Micro, Inc." ,
"product" : {
"product_data" : [
{
"product_name" : "Trend Micro Security (Consumer) uiAirSupport" ,
"version" : {
"version_data" : [
{
"version_affected" : "<" ,
"version_name" : "2023 (6.0)" ,
"version_value" : "6.0.2093"
}
]
}
}
]
}
}
]
}
} ,
"references" : {
"reference_data" : [
{
"url" : "https://helpcenter.trendmicro.com/en-us/article/tmka-12134" ,
"refsource" : "MISC" ,
"name" : "https://helpcenter.trendmicro.com/en-us/article/tmka-12134"
} ,
{
"url" : "https://helpcenter.trendmicro.com/ja-jp/article/tmka-12132" ,
"refsource" : "MISC" ,
"name" : "https://helpcenter.trendmicro.com/ja-jp/article/tmka-12132"
} ,
{
"url" : "https://medium.com/@s1kr10s/av-when-a-friend-becomes-an-enemy-55f41aba42b1" ,
"refsource" : "MISC" ,
"name" : "https://medium.com/@s1kr10s/av-when-a-friend-becomes-an-enemy-55f41aba42b1"
2024-01-24 02:00:34 +00:00
}
]
}
}