PT-2018-9929 · Trend Micro · Trend Micro Officescan

Published

2018-06-12

·

Updated

2019-10-03

·

CVE-2018-10508

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Trend Micro OfficeScan versions 11.0 SP1 and XG
Description: A vulnerability could allow an attacker to use a specially crafted URL to elevate account permissions on vulnerable installations. The attacker must already have at least guest privileges in order to exploit this issue.
Recommendations: For Trend Micro OfficeScan versions 11.0 SP1 and XG, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2018-10508

Affected Products

Trend Micro Officescan