Vulnerabilities > Symantec > Brightmail Gateway Appliance

DATE CVE VULNERABILITY TITLE RISK
2009-04-24 CVE-2009-0064 Remote Privilege Escalation vulnerability in Symantec Brightmail Gateway Appliance 7.5/7.6/7.7
Multiple unspecified vulnerabilities in the Control Center in Symantec Brightmail Gateway Appliance before 8.0.1 allow remote authenticated users to gain privileges, and possibly obtain sensitive information or hijack sessions of arbitrary users, via vectors involving (1) administrative scripts or (2) console functions.
network
low complexity
symantec
critical
9.0
2009-04-24 CVE-2009-0063 Cross-Site Scripting vulnerability in Symantec Brightmail Gateway Appliance 7.5/7.6/7.7
Cross-site scripting (XSS) vulnerability in the Control Center in Symantec Brightmail Gateway Appliance before 8.0.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
network
symantec CWE-79
4.3