CVE-2018-6227: XSS
Published Mar 15, 2018
·Updated
A stored cross-site scripting (XSS) vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to inject client-side scripts into vulnerable systems.
Affected Software
1 affected component
trendmicro Email Encryption Gateway=5.5
Remediation
Patch Available
Event History
Mar 15, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Data Sourced
via NVD·07:29 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-6227?
CVE-2018-6227 is considered to be a medium severity vulnerability due to its potential impact on client-side security.
2
How do I fix CVE-2018-6227?
To fix CVE-2018-6227, update Trend Micro Email Encryption Gateway to the latest version that addresses the XSS vulnerability.
3
What types of systems are affected by CVE-2018-6227?
CVE-2018-6227 specifically affects Trend Micro Email Encryption Gateway version 5.5.
4
What kind of attack is possible with CVE-2018-6227?
CVE-2018-6227 could allow an attacker to perform stored cross-site scripting attacks on vulnerable systems.
5
Is CVE-2018-6227 easy to exploit?
The exploitation of CVE-2018-6227 may vary in difficulty depending on the attacker's knowledge and the configuration of the target system.