← Vulnerability feed

Vulnerability record · CVE-2019-15627 · published 17 October 2019

CVE-2019-15627: Trendmicro deep security link following vulnerability

Trendmicro · Deep Security

Versions 10.0, 11.0 and 12.0 of the Trend Micro Deep Security Agent are vulnerable to an arbitrary file delete attack, which may lead to availability impact. Local OS access is required. Please note that only Windows agents are affected.

7.1 CVSS 3.1 High EPSS 1.3% · top 30.5% CWE-59 · Link following
7.1CVSS 3.1 base score, v2 6.6
1.3%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References
17 Jun 2026Last modified by NVD

Description

Versions 10.0, 11.0 and 12.0 of the Trend Micro Deep Security Agent are vulnerable to an arbitrary file delete attack, which may lead to availability impact. Local OS access is required. Please note that only Windows agents are affected.

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2019-15627 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2023-52337Trendmicro deep security improper privilege management vulnerabilityAn improper access control vulnerability in Trend Micro Deep Security 20.0 and Trend Micro Cloud One - Endpoint and Workload Security Agent could all…EPSS 0.24%7.8CVE-2023-52338Trendmicro deep security link following vulnerabilityA link following vulnerability in the Trend Micro Deep Security 20.0 and Trend Micro Cloud One - Endpoint and Workload Security Agent could allow a l…EPSS 0.31%7.5CVE-2019-15626Trendmicro deep security cleartext transmission vulnerabilityThe Deep Security Manager application (Versions 10.0, 11.0 and 12.0), when configured in a certain way, may transmit initial LDAP communication in cl…EPSS 1.8%7.0CVE-2018-6218Trendmicro deep security untrusted search path vulnerabilityA DLL Hijacking vulnerability in Trend Micro's User-Mode Hooking Module (UMH) could allow an attacker to run arbitrary code on a vulnerable system.EPSS 1.6%6.7CVE-2020-8607Trendmicro antivirus toolkit improper input validation vulnerabilityAn input validation vulnerability found in multiple Trend Micro products utilizing a particular version of a specific rootkit protection driver could…EPSS 0.55%5.5CVE-2021-25252Trendmicro apex central uncontrolled resource consumption vulnerabilityTrend Micro's Virus Scan API (VSAPI) and Advanced Threat Scan Engine (ATSE) - are vulnerable to a memory exhaustion vulnerability that may lead to de…EPSS 0.62%7.8CVE-2026-81963Windows Update Stack link-following privilege escalationWindows Update Stack resolves links improperly before accessing files, a link-following flaw (CWE-59) compounded by improper access control (CWE-284)…KEVEPSS 0.39%analysed7.8CVE-2015-5287ABRT abrt-hook-ccpp symlink privilege escalationThe abrt-hook-ccpp helper in Red Hat's Automatic Bug Reporting Tool (ABRT) before 2.7.1 follows symlinks on files with predictable names, letting a l…KEVEPSS 5.0%analysed

Source: NIST National Vulnerability Database (record CVE-2019-15627), CISA KEV, FIRST EPSS (scores of 2026-09-29). This page is refreshed as NVD updates the record.