CVE-2020-12594: Critical severity symantec messaging gateway for service providers vulnerability
Published Dec 10, 2020
·Updated
A privilege escalation flaw allows a malicious, authenticated, privileged CLI user to escalate their privileges on the system and gain full control over the SMG appliance. This affects SMG prior to 10.7.4.
Affected Software
1 affected component
Broadcom Symantec Messaging Gateway<10.7.4
Event History
Dec 10, 2020
CVE Published
via MITRE·05:21 AM
Data Sourced
via MITRE·05:21 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-12594?
CVE-2020-12594 is classified as a high-severity privilege escalation vulnerability.
2
How do I fix CVE-2020-12594?
To remediate CVE-2020-12594, upgrade your Symantec Messaging Gateway to version 10.7.4 or later.
3
Who is affected by CVE-2020-12594?
CVE-2020-12594 affects authenticated, privileged CLI users of Symantec Messaging Gateway versions prior to 10.7.4.
4
What type of vulnerability is CVE-2020-12594?
CVE-2020-12594 is a privilege escalation vulnerability that can be exploited by an authenticated user.
5
What could an attacker gain from exploiting CVE-2020-12594?
An attacker exploiting CVE-2020-12594 could gain full control over the affected Symantec Messaging Gateway appliance.