Security News > 2017 > August > Symantec Patches Code Execution Flaw in Email Security Product (Security Week)

Symantec Patches Code Execution Flaw in Email Security Product (Security Week)
2017-08-11 14:26

Symantec has released an update for its Messaging Gateway email security product to address remote code execution and cross-site request forgery (CSRF) vulnerabilities. The more serious of the security holes, tracked as CVE-2017-6327 and classified as high severity, is a remote code execution flaw discovered by Philip Pettersson. read more


News URL

http://feedproxy.google.com/~r/Securityweek/~3/RvuaUHUZEFQ/symantec-patches-code-execution-flaw-email-security-product

Related Vulnerability

DATE CVE VULNERABILITY TITLE RISK
2017-08-11 CVE-2017-6327 Improper Input Validation vulnerability in Symantec Message Gateway
The Symantec Messaging Gateway before 10.6.3-267 can encounter an issue of remote code execution, which describes a situation whereby an individual may obtain the ability to execute commands remotely on a target machine or in a target process.
network
low complexity
symantec CWE-20
6.5

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Symantec 241 68 249 112 86 515