Insecure Update via HTTP in Trend Micro Email Encryption Gateway
CVE-2018-6219
6.5MEDIUM
Key Information:
- Vendor
- Trend Micro
- Vendor
- CVE Published:
- 15 March 2018
Summary
An Insecure Update via HTTP vulnerability in Trend Micro Email Encryption Gateway 5.5 enables attackers to eavesdrop on and manipulate update data. This flaw could expose sensitive information and compromise the integrity of the update process, making it critical for users to secure their email encryption solutions.
Affected Version(s)
Trend Micro Email Encryption Gateway 5.5
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved