ZeroHour

CVE-2018-6230

PoC ×2
CVSS 3.0
6.8 medium
EPSS
3%p88
Published
()
Modified
Description

A SQL injection vulnerability in an Trend Micro Email Encryption Gateway 5.5 search configuration script could allow an attacker to execute SQL commands to upload and execute arbitrary code that may harm the target system.

Vendors
trendmicro
Products
email encryption gateway
Weakness
CWE-89
Vector
CVSS:3.0/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news