CVE-2012-3580: High severity symantec messaging gateway for service providers vulnerability
Published Aug 29, 2012
·Updated
Symantec Messaging Gateway (SMG) before 10.0 allows remote authenticated users to modify the web application by leveraging access to the management interface.
Affected Software
5 affected components
Symantec Messaging Gateway<=9.5.4
Symantec Messaging Gateway=9.5
Symantec Messaging Gateway=9.5.1
Symantec Messaging Gateway=9.5.2
Symantec Messaging Gateway=9.5.3
Event History
Aug 29, 2012
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-3580?
CVE-2012-3580 is classified as a medium severity vulnerability due to its potential for unauthorized modification of the web application.
2
How do I fix CVE-2012-3580?
To fix CVE-2012-3580, upgrade your Symantec Messaging Gateway to version 10.0 or later.
3
Who is affected by CVE-2012-3580?
CVE-2012-3580 affects users of Symantec Messaging Gateway versions 9.5.4 and below.
4
What type of vulnerability is CVE-2012-3580?
CVE-2012-3580 is a remote access vulnerability that allows authenticated users to exploit the management interface.
5
When was CVE-2012-3580 disclosed?
CVE-2012-3580 was disclosed in August 2012.