First published: Thu Mar 15 2018(Updated: )
An Insecure Update via HTTP vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to eavesdrop and tamper with certain types of update data.
Credit: security@trendmicro.com
Affected Software | Affected Version | How to fix |
---|---|---|
Trendmicro Email Encryption Gateway | =5.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-6219 has a medium severity rating due to its potential for eavesdropping and tampering with update data.
To fix CVE-2018-6219, ensure that all updates for Trend Micro Email Encryption Gateway 5.5 are obtained through a secure connection rather than HTTP.
CVE-2018-6219 affects Trend Micro Email Encryption Gateway version 5.5.
CVE-2018-6219 is categorized as an Insecure Update via HTTP vulnerability.
Yes, CVE-2018-6219 can potentially be exploited remotely by an attacker to eavesdrop on update data.