ZeroHour

CVE-2018-6228

PoC ×2
CVSS 3.0
9.8 critical
EPSS
10%p95
Published
()
Modified
Description

A SQL injection vulnerability in a Trend Micro Email Encryption Gateway 5.5 policy script could allow an attacker to execute SQL commands to upload and execute arbitrary code that may harm the target system.

Vendors
trendmicro
Products
email encryption gateway
Weakness
CWE-89
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news