Exploitation Summary
EIP tracks 1 public exploit for CVE-2019-9491. PoCs published by hyp3rlinx.
AI-analyzed exploit summary This exploit leverages a vulnerability in Trend Micro Anti-Threat Toolkit (ATTK) where arbitrary .EXE files named 'cmd.exe' or 'regedit.exe' are executed during a scan. The provided C code compiles into a malicious executable that launches PowerShell when executed by the ATTK.
Description
Trend Micro Anti-Threat Toolkit (ATTK) versions 1.62.0.1218 and below have a vulnerability that may allow an attacker to place malicious files in the same directory, potentially leading to arbitrary remote code execution (RCE) when executed.
Exploits (1)
This exploit leverages a vulnerability in Trend Micro Anti-Threat Toolkit (ATTK) where arbitrary .EXE files named 'cmd.exe' or 'regedit.exe' are executed during a scan. The provided C code compiles into a malicious executable that launches PowerShell when executed by the ATTK.
References (7)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H