{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-07-04T18:16:21.367","vulnerabilities":[{"cve":{"id":"CVE-2018-16530","sourceIdentifier":"psirt@forcepoint.com","published":"2019-04-09T19:29:00.273","lastModified":"2026-06-17T01:44:26.713","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A stack-based buffer overflow in Forcepoint Email Security version 8.5 allows an attacker to craft malicious input and potentially crash a process creating a denial-of-service. While no known Remote Code Execution (RCE) vulnerabilities exist, as with all buffer overflows, the possibility of RCE cannot be completely ruled out. Data Execution Protection (DEP) is already enabled on the Email appliance as a risk mitigation."},{"lang":"es","value":"Un desbordamiento de búfer  en región stack de la memoria en Forcepoint Email Security versión 8.5 permite a un atacante crear una entrada maliciosa y potencialmente bloquear un proceso creando una denegación de servicio  (DoS). Si bien no se conocen vulnerabilidades de Remote Code Execution (RCE), como con todos los desbordamientos de búfer, no se puede descartar completamente la posibilidad de que RCE se ejecute. La Data Execution Protection (DEP) ya está habilitada en el dispositivo de Email como una mitigación de riesgos."}],"affected":[{"source":"psirt@forcepoint.com","affectedData":[{"vendor":"Forcepoint","product":"Forcepoint Email Security","versions":[{"version":"8.5","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-787"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:forcepoint:email_security:8.5.0:*:*:*:*:*:*:*","matchCriteriaId":"DAE606FF-8D95-4DA7-8A13-C24C7FCCD8E2"},{"vulnerable":true,"criteria":"cpe:2.3:a:forcepoint:email_security:8.5.3:*:*:*:*:*:*:*","matchCriteriaId":"F954B655-E3BC-4D8D-8C3B-DFF973568D6E"}]}]}],"references":[{"url":"https://help.forcepoint.com/security/CVE/CVE-2018-16530.html","source":"psirt@forcepoint.com","tags":["Vendor Advisory"]},{"url":"https://support.forcepoint.com/KBArticle?id=000016621","source":"psirt@forcepoint.com","tags":["Permissions Required","Vendor Advisory"]},{"url":"https://help.forcepoint.com/security/CVE/CVE-2018-16530.html","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://support.forcepoint.com/KBArticle?id=000016621","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Permissions Required","Vendor Advisory"]}]}}]}