CVE-2025-52521

Trend Micro Security 17.8 (Consumer) is vulnerable to a link following local privilege escalation vulnerability that could allow a local attacker to unintentionally delete privileged Trend Micro files including its own.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:trendmicro:maximum_security_2022:17.8:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

26 Aug 2025, 17:53

Type Values Removed Values Added
CPE cpe:2.3:a:trendmicro:maximum_security_2022:17.8:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
First Time Microsoft windows
Microsoft
Trendmicro maximum Security 2022
Trendmicro
References () https://helpcenter.trendmicro.com/en-us/article/tmka-18876 - () https://helpcenter.trendmicro.com/en-us/article/tmka-18876 - Vendor Advisory
References () https://www.zerodayinitiative.com/advisories/ZDI-25-585/ - () https://www.zerodayinitiative.com/advisories/ZDI-25-585/ - Third Party Advisory

15 Jul 2025, 13:14

Type Values Removed Values Added
Summary
  • (es) Trend Micro Security 17.8 (Consumer) es afectado por una vulnerabilidad de escalada de privilegios locales que sigue un enlace que podría permitir a un atacante local eliminar de manera involuntaria archivos privilegiados de Trend Micro, incluidos los suyos propios.

10 Jul 2025, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-10 19:15

Updated : 2025-08-26 17:53


NVD link : CVE-2025-52521

Mitre link : CVE-2025-52521

CVE.ORG link : CVE-2025-52521


JSON object : View

Products Affected

trendmicro

  • maximum_security_2022

microsoft

  • windows
CWE
CWE-64

Windows Shortcut Following (.LNK)