A vulnerability in Trend Micro OfficeScan 11.0 SP1 and XG could allow a attacker to take a series of steps to bypass or render the OfficeScan Unauthorized Change Prevention inoperable on vulnerable installations. An attacker must already have administrator privileges in order to exploit this vulnerability.
References
Link | Resource |
---|---|
https://success.trendmicro.com/solution/1119961 | Patch Vendor Advisory |
http://hyp3rlinx.altervista.org/advisories/TRENDMICRO-OFFICESCAN-XG-v11.0-UNAUTHORIZED-CHANGE-PREVENTION-SERVICE-BYPASS.txt | Exploit Third Party Advisory |
https://www.exploit-db.com/exploits/44858/ | Exploit Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-06-12 10:29
Updated : 2019-10-02 17:03
NVD link : CVE-2018-10507
Mitre link : CVE-2018-10507
JSON object : View
CWE
Products Affected
trendmicro
- officescan