VYPR
Unrated severityNVD Advisory· Published Feb 20, 2020· Updated Aug 5, 2024

CVE-2019-19694

CVE-2019-19694

Description

The Trend Micro Security 2019 (15.0.0.1163 and below) consumer family of products is vulnerable to a denial of service (DoS) attack in which a malicious actor could manipulate a key file at a certain time during the system startup process to disable the product's malware protection functions or the entire product completely..

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Trend Micro Security 2019 (≤15.0.0.1163) vulnerable to DoS via file manipulation during startup, disabling malware protection.

Vulnerability

Trend Micro Security 2019 (version 15.0.0.1163 and earlier) consumer products—Premium Security, Maximum Security, Internet Security, and Antivirus+ Security for Windows—contain a denial-of-service vulnerability (CWE-400) [1][2]. An attacker can manipulate a key file during system startup to disable malware protection or the entire product.

Exploitation

An attacker requires local access to manipulate the key file at a specific time during startup [1][2]. No authentication or user interaction is needed beyond file write access at that moment.

Impact

Successful exploitation disables Trend Micro's malware protection functions or completely disables the product, leaving the system vulnerable to malware [1][2].

Mitigation

Update to Trend Micro Security 2020 (version 16) or later, which are not affected [1][2]. Users on outdated, unsupported versions should upgrade to a supported version [1][2].

AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.