CVE-2012-0308
Cross-site request forgery (CSRF) vulnerability in Symantec Messaging Gateway (SMG) before 10.0 allows remote attackers to hijack the authentication of administrators.
- Affected products
- Symantec Messaging Gateway
- Symantec Messaging Gateway
- ≤ 9.5.4, 9.5, 9.5.1, 9.5.2, 9.5.3, 10.0
- Fix
- Available
- CVSS 2.0
- 6.8 MEDIUM
- EPSS
- 1.9% (78th percentile)
- Weakness
- CWE-352
- NVD status
- Modified
- Published
- 2012-08-29
CVE-2012-0308 at NVD
1 known exploit for CVE-2012-0308
Proof-of-concept code and exploit modules indexed by Sploitus