// For flags

CVE-2009-0686

Trend Micro Internet Security Pro 2009 - Priviliege Escalation

Severity Score

7.2
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

3
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The TrendMicro Activity Monitor Module (tmactmon.sys) 2.52.0.1002 in Trend Micro Internet Pro 2008 and 2009, and Security Pro 2008 and 2009, allows local users to gain privileges via a crafted IRP in a METHOD_NEITHER IOCTL request to \Device\tmactmon that overwrites memory.

Activity Monitor Module de TrendMicro (tmactmon.sys) versión 2.52.0.1002 en Internet Pro 2008 y 2009, y Security Pro 2008 y 2009 de Trend Micro, permite a los usuarios locales alcanzar privilegios por medio de un IRP diseñado en una petición IOCTL METHOD_NEITHER a \Device\tmactmon que sobrescribe la memoria.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2009-02-22 CVE Reserved
  • 2009-04-01 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-07 CVE Updated
  • 2024-08-07 First Exploit
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-399: Resource Management Errors
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Trendmicro
Search vendor "Trendmicro"
Internet Security
Search vendor "Trendmicro" for product "Internet Security"
2008
Search vendor "Trendmicro" for product "Internet Security" and version "2008"
-
Affected
Trendmicro
Search vendor "Trendmicro"
Internet Security
Search vendor "Trendmicro" for product "Internet Security"
2008
Search vendor "Trendmicro" for product "Internet Security" and version "2008"
pro
Affected
Trendmicro
Search vendor "Trendmicro"
Internet Security
Search vendor "Trendmicro" for product "Internet Security"
2009
Search vendor "Trendmicro" for product "Internet Security" and version "2009"
-
Affected
Trendmicro
Search vendor "Trendmicro"
Internet Security
Search vendor "Trendmicro" for product "Internet Security"
2009
Search vendor "Trendmicro" for product "Internet Security" and version "2009"
pro
Affected