5
CVSSv2

CVE-2012-4347

Published: 05/12/2012 Updated: 11/10/2013
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Multiple directory traversal vulnerabilities in the management console in Symantec Messaging Gateway (SMG) 9.5.x allow remote authenticated users to read arbitrary files via a .. (dot dot) in the (1) logFile parameter in a logs action to brightmail/export or (2) localBackupFileSelection parameter in an APPLIANCE restoreSource action to brightmail/admin/restore/download.do.

Vulnerable Product Search on Vulmon Subscribe to Product

symantec messaging gateway 9.5.2

symantec messaging gateway 9.5.3

symantec messaging gateway 9.5

symantec messaging gateway 9.5.4

symantec messaging gateway 9.5.1

Exploits

======= Summary ======= Name: Symantec Messaging Gateway - Arbitrary file download is possible with a crafted URL (authenticated) Release Date: 30 November 2012 Reference: NGS00266 Discoverer: Ben Williams <benwilliams@ngssecurecom> Vendor: Symantec Vendor Reference: Systems Affected: Symantec Messaging Gateway 953-3 Risk: Medium Status: ...