CVE-2018-10355: Trend Micro Email Encryption Gateway
High severity, CVSS 7.0. EPSS: 0.6% chance of exploitation in the next 30 days.
An authentication weakness vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow an attacker to recover user passwords on vulnerable installations due to a flaw in the DBCrypto class. An attacker must first obtain access to the user database on the target system in order to exploit this vulnerability.
Affected products
- Trend Micro Email Encryption Gateway: up to and including 5.5
Published 2018-05-23. Last modified 2026-06-17.