CVE-2018-6237

Severity
7.5HIGH
EPSS
6.5%
top 8.87%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 25
Latest updateMay 14

Description

A vulnerability in Trend Micro Smart Protection Server (Standalone) 3.x could allow an unauthenticated remote attacker to manipulate the product to send a large number of specially crafted HTTP requests to potentially cause the file system to fill up, eventually causing a denial of service (DoS) situation.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-4584-7932-cm8g: A vulnerability in Trend Micro Smart Protection Server (Standalone) 32022-05-14
CVEList
CVE-2018-6237: A vulnerability in Trend Micro Smart Protection Server (Standalone) 32018-05-25
CVE-2018-6237 (HIGH CVSS 7.5) | A vulnerability in Trend Micro Smar | cvebase.io