VYPR
Unrated severityNVD Advisory· Published Dec 3, 2021· Updated Aug 4, 2024

CVE-2021-43772

CVE-2021-43772

Description

Trend Micro Security 2021 v17.0 (Consumer) contains a vulnerability that allows files inside the protected folder to be modified without any detection.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Trend Micro Security 2021 v17.0 and below allows files inside the protected Folder Shield folder to be modified without detection.

Vulnerability

Trend Micro Security 2021 consumer products (Premium Security, Maximum Security, Internet Security, and Antivirus+ Security) version 17 and below contain a vulnerability that permits files inside the protected Folder Shield folder to be modified without detection. The Folder Shield feature is designed to protect user-designated folders from unauthorized changes. The issue affects all language editions on Microsoft Windows. [1]

Exploitation

An attacker with local access and low privileges can modify files within the Folder Shield protected folder without triggering any detection by the product. The vulnerability requires no user interaction and can be exploited at the local machine level. The exact sequence of steps has not been publicly detailed, but the advisory confirms that no validations prevent file modification under certain conditions. [1]

Impact

Successful exploitation allows an attacker to modify files inside the protected folder, potentially altering victim data or introducing malicious content without the user's knowledge. The CIA impact is limited to integrity (no confidentiality or availability impact), and the CVSS score is 5.5. As of the disclosure date, Trend Micro has received no reports of active exploitation. [1]

Mitigation

Trend Micro released version 2022 (v17.7) on November 29, 2021 to resolve this vulnerability. Users should update all affected Trend Micro Security 2021 products to version 17.7 or later. No workarounds have been identified. [1]

AI Insight generated on May 27, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.