ID:6356 - Exploit for Input validation error in OfficeScan - CVE-2018-10507

 
Main Vulnerability Database Exploits ID:6356 - Exploit for Input validation error in OfficeScan - CVE-2018-10507

ID:6356 - Exploit for Input validation error in OfficeScan - CVE-2018-10507

Published: June 17, 2021


Vulnerability identifier: #VU37054
Vulnerability risk: Low
CVE-ID: CVE-2018-10507
CWE-ID: CWE-20
Exploitation vector: Local access
Vulnerable software:
OfficeScan

Link to public exploit:


Vulnerability description

The vulnerability allows a local privileged user to manipulate data.

A vulnerability in Trend Micro OfficeScan 11.0 SP1 and XG could allow a attacker to take a series of steps to bypass or render the OfficeScan Unauthorized Change Prevention inoperable on vulnerable installations. An attacker must already have administrator privileges in order to exploit this vulnerability.


Remediation

Install update from vendor's website.