CVE-2023-28929: Trend Micro Antivirus+ Security 2021

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Trend Micro Security 2021, 2022, and 2023 (Consumer) are vulnerable to a DLL Hijacking vulnerability which could allow an attacker to use a specific executable file as an execution and/or persistence mechanism which could execute a malicious program each time the executable file is started.

Affected products

  • Trend Micro Antivirus+ Security 2021: up to and including 17.0.1412
  • Trend Micro Antivirus+ Security 2022: up to and including 17.7.1476
  • Trend Micro Antivirus+ Security 2023: up to and including 17.7.1476
  • Trend Micro Internet Security 2021: up to and including 17.0.1412
  • Trend Micro Internet Security 2022: up to and including 17.7.1476
  • Trend Micro Internet Security 2023: up to and including 17.7.1476
  • Trend Micro Maximum Security 2021: up to and including 17.0.1412
  • Trend Micro Maximum Security 2022: up to and including 17.7.1476
  • Trend Micro Maximum Security 2023: up to and including 17.7.1476
  • Trend Micro Premium Security 2021: up to and including 17.0.1412
  • Trend Micro Premium Security 2022: up to and including 17.7.1476
  • Trend Micro Premium Security 2023: up to and including 17.7.1476

Published 2023-06-26. Last modified 2026-06-17.