CVE-2017-14088
CVE-2017-14088
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.7%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
05 Oct 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Memory Corruption Privilege Escalation vulnerabilities in Trend Micro OfficeScan 11.0 and XG allows local attackers to execute arbitrary code and escalate privileges to resources normally reserved for the kernel on vulnerable installations by exploiting tmwfp.sys. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit the vulnerability.
Affected products
Trend Micro · Trend Micro OfficeScanWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →