Out-of-Bounds Read Vulnerability in Trend Micro Maximum Security software
CVE-2018-6234
5.5MEDIUM
What is CVE-2018-6234?
The vulnerability involves an Out-of-Bounds Read in the Trend Micro Maximum Security software, specifically within the tmnciesc.sys driver when processing IOCTL 0x222814. This flaw can potentially allow local attackers to gain access to sensitive information from affected installations. To exploit this vulnerability, an attacker must first be able to execute low-privileged code on the target system, which could lead to further security risks.
Affected Version(s)
Trend Micro Maximum Security 2018