A vulnerability in Trend Micro OfficeScan 11.0 SP1 and XG could allow a attacker to take a series of steps to bypass or render the OfficeScan Unauthorized Change Prevention inoperable on vulnerable installations. An attacker must already have administrator privileges in order to exploit this vulnerability.
References
Link | Resource |
---|---|
http://hyp3rlinx.altervista.org/advisories/TRENDMICRO-OFFICESCAN-XG-v11.0-UNAUTHORIZED-CHANGE-PREVENTION-SERVICE-BYPASS.txt | Exploit Third Party Advisory |
https://success.trendmicro.com/solution/1119961 | Patch Vendor Advisory |
https://www.exploit-db.com/exploits/44858/ | Exploit Third Party Advisory VDB Entry |
http://hyp3rlinx.altervista.org/advisories/TRENDMICRO-OFFICESCAN-XG-v11.0-UNAUTHORIZED-CHANGE-PREVENTION-SERVICE-BYPASS.txt | Exploit Third Party Advisory |
https://success.trendmicro.com/solution/1119961 | Patch Vendor Advisory |
https://www.exploit-db.com/exploits/44858/ | Exploit Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 03:41
Type | Values Removed | Values Added |
---|---|---|
References | () http://hyp3rlinx.altervista.org/advisories/TRENDMICRO-OFFICESCAN-XG-v11.0-UNAUTHORIZED-CHANGE-PREVENTION-SERVICE-BYPASS.txt - Exploit, Third Party Advisory | |
References | () https://success.trendmicro.com/solution/1119961 - Patch, Vendor Advisory | |
References | () https://www.exploit-db.com/exploits/44858/ - Exploit, Third Party Advisory, VDB Entry |
Information
Published : 2018-06-12 17:29
Updated : 2024-11-21 03:41
NVD link : CVE-2018-10507
Mitre link : CVE-2018-10507
CVE.ORG link : CVE-2018-10507
JSON object : View
Products Affected
trendmicro
- officescan
CWE