CVE-2019-15627
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 1.3%
from disclosure to weapon50 days
Published on NVDOct 17
1st PoC+50d
exploitation probability
1.3%top 32% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Versions 10.0, 11.0 and 12.0 of the Trend Micro Deep Security Agent are vulnerable to an arbitrary file delete attack, which may lead to availability impact. Local OS access is required. Please note that only Windows agents are affected.
Affected products
Trend Micro · Deep Security Agentpublic PoCs found — 2✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/47751cve_referencepacketstormsecurity.com/files/155579/Trend-Micro-Deep-Security-Agent-11-Arbitrary-File-Overwrite.htmlunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.