CVE-2018-10509: Trend Micro OfficeScan

High severity, CVSS 8.8. EPSS: 1.1% chance of exploitation in the next 30 days.

A vulnerability in Trend Micro OfficeScan 11.0 SP1 and XG could allow a attacker to exploit it via a Browser Refresh attack on vulnerable installations. An attacker must be using a AD logon user account in order to exploit this vulnerability.

Affected products

  • Trend Micro OfficeScan: version 11.0 only; version xg only

Published 2018-06-12. Last modified 2026-06-17.