CVE-2012-0307: XSS
Multiple cross-site scripting (XSS) vulnerabilities in Symantec Messaging Gateway (SMG) before 10.0 allow remote attackers to inject arbitrary web script or HTML via (1) web content or (2) e-mail content.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0307?
CVE-2012-0307 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2012-0307?
To remediate CVE-2012-0307, users should upgrade to Symantec Messaging Gateway version 10.0 or later.
What types of attacks are possible with CVE-2012-0307?
CVE-2012-0307 allows attackers to perform cross-site scripting attacks by injecting arbitrary web scripts or HTML.
Which versions of Symantec Messaging Gateway are affected by CVE-2012-0307?
CVE-2012-0307 affects Symantec Messaging Gateway versions prior to 10.0, including all versions up to and including 9.5.4.
Can CVE-2012-0307 be exploited through email?
Yes, CVE-2012-0307 can be exploited through email content, allowing remote attackers to inject scripts.