6.3
CVSSv3

CVE-2018-10358

Published: 08/06/2018 Updated: 03/10/2019
CVSS v2 Base Score: 5.4 | Impact Score: 7.8 | Exploitability Score: 3.4
CVSS v3 Base Score: 6.3 | Impact Score: 5.2 | Exploitability Score: 1
VMScore: 481
Vector: AV:L/AC:M/Au:N/C:N/I:P/A:C

Vulnerability Summary

A pool corruption privilege escalation vulnerability in Trend Micro OfficeScan 11.0 SP1 and XG could allow a local malicious user to escalate privileges on vulnerable installations due to a flaw within the processing of IOCTL 0x2200B4 in the TMWFP driver. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

Vulnerable Product Search on Vulmon Subscribe to Product

trendmicro officescan xg

trendmicro officescan 11.0