Password Manager
Vendor:
First CVE: Apr 12, 2016 · Active for 10 years
15
Total CVEs
More Total CVEs than 92% of tracked products
2.5
Avg CVEs / Year
Higher CVE frequency than 74% of tracked products
7.6
Avg CVSS
Higher Avg CVSS than 60% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Password Manager over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 12, 2016
10 years ago
Most Recent CVE
Jul 10, 2025
379 days ago
CVE Severity & Scoring
Password Manager15 CVEs
20%
73%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local12 (80.0%)
Network3 (20.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low15 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None8 (53.3%)
Unknown0 (0.0%)
Required7 (46.7%)
Privileges Required
Low7 (46.7%)
High0 (0.0%)
None8 (53.3%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (15 CVEs).
15 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-3987CRITICAL The HTTP server in Trend Micro Password Manager allows remote web servers to execute arbitrary commands via the url parameter to (1) api/openUrlInDefaultBrowser or (2) api/showSB. | Apr 12, 2016 | 9.8 | 53 | NO | YES |
CVE-2021-32462HIGH Trend Micro Password Manager (Consumer) version 5.0.0.1217 and below is vulnerable to an Exposed Hazardous Function Remote Code Execution vulnerability which could allow an unprivi | Jul 8, 2021 | 8.8 | 29 | NO | NO |
CVE-2020-8469HIGH Trend Micro Password Manager for Windows version 5.0 is affected by a DLL hijacking vulnerability would could potentially allow an attacker privleged escalation. | Mar 12, 2020 | 7.8 | 26 | NO | NO |
CVE-2022-28394HIGH EOL Product CVE - Installer of Trend Micro Password Manager (Consumer) versions 3.7.0.1223 and below provided by Trend Micro Incorporated contains an issue with the DLL search path | May 27, 2022 | 7.8 | 25 | NO | NO |
CVE-2022-26337HIGH Trend Micro Password Manager (Consumer) installer version 5.0.0.1262 and below is vulnerable to an Uncontrolled Search Path Element vulnerability that could allow an attacker to us | Mar 8, 2022 | 7.8 | 25 | NO | NO |
CVE-2021-32461HIGH Trend Micro Password Manager (Consumer) version 5.0.0.1217 and below is vulnerable to an Integer Truncation Privilege Escalation vulnerability which could allow a local attacker to | Jul 8, 2021 | 7.8 | 24 | NO | NO |
CVE-2021-28647HIGH Trend Micro Password Manager version 5 (Consumer) is vulnerable to a DLL Hijacking vulnerability which could allow an attacker to inject a malicious DLL file during the installatio | Apr 13, 2021 | 7.8 | 24 | NO | NO |
CVE-2019-14687HIGH A DLL hijacking vulnerability exists in Trend Micro Password Manager 5.0 in which, if exploited, would allow an attacker to load an arbitrary unsigned DLL into the signed service's | Aug 20, 2019 | 7.8 | 24 | NO | NO |
CVE-2019-14684HIGH A DLL hijacking vulnerability exists in Trend Micro Password Manager 5.0 in which, if exploited, would allow an attacker to load an arbitrary unsigned DLL into the signed service's | Aug 20, 2019 | 7.8 | 24 | NO | NO |
CVE-2025-52837HIGH Trend Micro Password Manager (Consumer) version 5.8.0.1327 and below is vulnerable to a Link Following Privilege Escalation Vulnerability that could allow an attacker the opportuni | Jul 10, 2025 | 7.8 | 23 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (15 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
6.7% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (15 CVEs).
Media Mentions
Signals from CVEs in this product scope (15 CVEs).
Top CNAs Publishing CVEs For Password Manager
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 5.1 | 1 | 7.5 | 2.9% | 0 | 0 |
| 5.0 | 4 | 7.7 | 1.6% | 0 | 0 |