Security Advisory

CVE-2018-10355

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-05-23 16:00:00
Last updated 2024-08-05 07:39:07
Assigner trendmicro
CVSS score not scored
State PUBLISHED

Description

An authentication weakness vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to recover user passwords on vulnerable installations due to a flaw in the DBCrypto class. An attacker must first obtain access to the user database on the target system in order to exploit this vulnerability.