多款Trend Micro产品安全漏洞

QQ空间 新浪微博 微信 QQ facebook twitter
漏洞ID 1897449 漏洞类型 其他
发布时间 2020-01-17 更新时间 2020-08-03
CVE编号 CVE-2019-20357 CNNVD-ID CNNVD-202001-869
漏洞平台 N/A CVSS评分 N/A
|漏洞来源
https://cxsecurity.com/issue/WLB-2020010135
http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-202001-869
|漏洞详情
基于Windows平台的多款Trend Micro产品中存在安全漏洞。攻击者可借助恶意的程序利用该漏洞提升权限,执行任意代码。以下产品及版本受到影响:Premium Security 2019 v15,2020 v16版本;Maximum Security 2019 v15版本,2020 v16版本;Internet Security 2019 v15版本,2020 v16版本;Antivirus + Security 2019 v15版本,2020 v16版本。
|漏洞EXP
[+] Credits: John Page (aka hyp3rlinx)		
[+] Website: hyp3rlinx.altervista.org
[+] Source:  http://hyp3rlinx.altervista.org/advisories/TREND-MICRO-SECURITY-CONSUMER-PERSISTENT-ARBITRARY-CODE-EXECUTION.txt
[+] twitter.com/hyp3rlinx
[+] ISR: ApparitionSec     
 

[Vendor]
www.trendmicro.com


[Product(s)]
Trend Micro Security (Consumer) Multiple Products


Trend Micro Security provides comprehensive protection for your devices.
This includes protection against ransomware, viruses, malware, spyware, and identity theft.


[Vulnerability Type]
Persistent Arbitrary Code Execution


[CVE Reference]
CVE-2019-20357


[CVSSv3 Scores: 6.7]


[Security Issue]
Trend Micro Security can potentially allow an attackers to use a malicious program to escalate privileges
to SYSTEM integrity and attain persistence on a vulnerable system.


[Product Affected Versions]
Platform Microsoft Windows

Premium Security 2019 (v15) and 2020 (v16)

Maximum Security
2019 (v15) and 2020 (v16)

Internet Security
2019 (v15) and 2020 (v16)
	
Antivirus + Security
2019 (v15) and 2020 (v16)


[References]
https://esupport.trendmicro.com/en-us/home/pages/technical-support/1124099.aspx

[Exploit/POC]
Compile C test code "Program.c"

void main(void){
 puts("Done!");
 system("pause");
}

1) Place under c:\ dir.
2) Reboot the machine, the coreServiceShell.exe service loads and executes our binary with SYSTEM integrity.



[Network Access]
Local


[Severity]
Medium



[Disclosure Timeline]
Vendor Notification: October 8, 2019
vendor advisory: January 15, 2020
January 16, 2020 : Public Disclosure



[+] Disclaimer
The information contained within this advisory is supplied "as-is" with no warranties or guarantees of fitness of use or otherwise.
Permission is hereby granted for the redistribution of this advisory, provided that it is not altered except by reformatting it, and
that due credit is given. Permission is explicitly given for insertion in vulnerability databases and similar, provided that due credit
is given to the author. The author is not responsible for any misuse of the information contained herein and accepts no responsibility
for any damage caused by the use or misuse of this information. The author prohibits any malicious use of security related information
or exploits by the author or elsewhere. All content (c).

hyp3rlinx
|参考资料

来源:hyp3rlinx.altervista.org

链接:http://hyp3rlinx.altervista.org/advisories/TREND-MICRO-SECURITY-CONSUMER-PERSISTENT-ARBITRARY-CODE-EXECUTION.txt


来源:esupport.trendmicro.com

链接:https://esupport.trendmicro.com/en-us/home/pages/technical-support/1124099.aspx


来源:nvd.nist.gov

链接:https://nvd.nist.gov/vuln/detail/CVE-2019-20357


来源:packetstormsecurity.com

链接:https://packetstormsecurity.com/files/155993/Trend-Micro-Security-Consumer-Arbitrary-Code-Execution.html