CVE-2018-6237: High severity trendmicro Smart Protection Server vulnerability
A vulnerability in Trend Micro Smart Protection Server (Standalone) 3.x could allow an unauthenticated remote attacker to manipulate the product to send a large number of specially crafted HTTP requests to potentially cause the file system to fill up, eventually causing a denial of service (DoS) situation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-6237?
CVE-2018-6237 has been classified with a high severity rating due to its potential to cause denial of service.
How do I fix CVE-2018-6237?
Fixing CVE-2018-6237 involves applying the latest security patches provided by Trend Micro for Smart Protection Server versions 3.0 to 3.3.
Who is affected by CVE-2018-6237?
CVE-2018-6237 affects users of Trend Micro Smart Protection Server versions 3.0, 3.1, 3.2, and 3.3.
What type of attack does CVE-2018-6237 enable?
CVE-2018-6237 enables an unauthenticated remote attacker to conduct a denial of service attack by flooding the server with specially crafted HTTP requests.
Is the Linux kernel affected by CVE-2018-6237?
No, the Linux kernel itself is not affected by CVE-2018-6237; the vulnerability is specific to Trend Micro Smart Protection Server.