CVE-2018-10356 is a vulnerability in TrendMicro Email Encryption Gateway
Published on May 23, 2018
A SQL injection remote code execution vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to execute arbitrary SQL statements on vulnerable installations due to a flaw in the formRequestDomains class. Authentication is required to exploit this vulnerability.
Products Associated with CVE-2018-10356
Want to know whenever a new CVE is published for TrendMicro Email Encryption Gateway? stack.watch will email you.
Affected Versions
Trend Micro Email Encryption Gateway Version 5.5 is affected by CVE-2018-10356Exploit Probability
EPSS
8.88%
Percentile
92.44%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.