Trend Micro HouseCall for Home Networks
cpe:2.3:a:trendmicro:housecall_for_home_networks:*:*:*:*:*:*:*
- <= 5.3.1302
A privilege escalation vulnerability has been identified in Trend Micro HouseCall for Home Networks, specifically in versions through 5.3.1302. This vulnerability arises from an uncontrolled search path element, allowing an attacker with low user privileges to create a malicious DLL that could be used to escalate privileges. The issue is present within the log4j scanner, where the process loads files from an unsecured location, potentially enabling the execution of arbitrary code with administrative rights.
Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing a local attacker to execute arbitrary code with administrative privileges on the affected system.
Users are advised to update to Trend Micro HouseCall for Home Networks version 5.3.1308, which addresses this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.