CVE-2020-25779
Last modified
CVE-2020-25779 is a low-severity vulnerability rated 3.3/10 on the CVSS scale. Trend Micro Antivirus for Mac 2020 (Consumer) has a vulnerability in which a Internationalized Domain Name homograph attack (Puny-code) could be used to add a malicious website to the approved websites list of Trend Micro Antivirus for Mac to bypass the web threat protection feature.. EPSS estimates a 0.84% chance of exploitation in the next 30 days.
Description
Trend Micro Antivirus for Mac 2020 (Consumer) has a vulnerability in which a Internationalized Domain Name homograph attack (Puny-code) could be used to add a malicious website to the approved websites list of Trend Micro Antivirus for Mac to bypass the web threat protection feature.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Trendmicro | Antivirus | 2020 |
References
- https://helpcenter.trendmicro.com/en-us/article/TMKA-09949Patch, Vendor Advisory
- https://helpcenter.trendmicro.com/en-us/article/TMKA-09949Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-25779?
How severe is CVE-2020-25779?
How do I fix CVE-2020-25779?
Are you affected by CVE-2020-25779?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
