A directory traversal vulnerability in Trend Micro Endpoint Application Control 2.0 could allow a remote attacker to execute arbitrary code on vulnerable installations due to a flaw in the FileDrop servlet. Authentication is required to exploit this vulnerability.
References
Link Resource
http://www.securityfocus.com/bid/104355 Third Party Advisory VDB Entry
https://success.trendmicro.com/solution/1119811 Vendor Advisory
https://www.zerodayinitiative.com/advisories/ZDI-18-469/ Third Party Advisory VDB Entry
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: trendmicro

Published: 2018-05-23T16:00:00

Updated: 2018-06-05T09:57:01

Reserved: 2018-04-24T00:00:00


Link: CVE-2018-10357

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-05-23T16:29:00.537

Modified: 2018-06-26T18:35:59.387


Link: CVE-2018-10357

JSON object: View

cve-icon Redhat Information

No data.

CWE