Trend Micro HouseCall for Home Networks Uncontrolled Search Path Element Privilege Escalation Vulnerability

Vulnerability

A privilege escalation vulnerability has been identified in Trend Micro HouseCall for Home Networks, specifically in versions through 5.3.1302. This vulnerability arises from an uncontrolled search path element, allowing an attacker with low user privileges to create a malicious DLL that could be used to escalate privileges. The issue is present within the log4j scanner, where the process loads files from an unsecured location, potentially enabling the execution of arbitrary code with administrative rights.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing a local attacker to execute arbitrary code with administrative privileges on the affected system.

Remediation

Users are advised to update to Trend Micro HouseCall for Home Networks version 5.3.1308, which addresses this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.