关键信息 漏洞名称: Trend Micro Password Manager Link Following Privilege Escalation Vulnerability CVE标识符: CVE-2020-52837 平台: Microsoft Windows CVSSv3评分: 7.8 (AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H) 严重性评级: 高 受影响版本: - Product: Trend Micro Password Manager - Affected Version(s): 5.8.0.1327 and below - Platform: Microsoft Windows - Language(s): English 解决方案: - Product: Trend Micro Password Manager - Updated Version(s): 5.8.0.1330 - Platform: Microsoft Windows - Language(s): English 漏洞详情: Trend Micro Password Manager (Consumer) version 5.8.0.1327 and below is vulnerable to a Link Following Privilege Escalation Vulnerability that could allow an attacker the opportunity to abuse symbolic links and other methods to delete any file(s) and achieve privilege escalation. 外部参考: ZDI-CAN-10729