CVE-2012-3579
Symantec Messaging Gateway (SMG) before 10.0 has a default password for an unspecified account, which makes it easier for remote attackers to obtain privileged access via an SSH session.
- Affected products
- Symantec Messaging Gateway
- Symantec Messaging Gateway
- ≤ 9.5.4, 9.5, 9.5.1, 9.5.2, 9.5.3
- Fix
- Available
- CVSS 2.0
- 7.9 HIGH
- EPSS
- 40.2% (99th percentile)
- Weakness
- CWE-264
- NVD status
- Modified
- Published
- 2012-08-29
CVE-2012-3579 at NVD
7 known exploits for CVE-2012-3579
Proof-of-concept code and exploit modules indexed by Sploitus
Symantec Messaging Gateway Default SSH Password
Symantec Messaging Gateway Default SSH Password
Symantec Messaging Gateway Default SSH Password
Symantec Messaging Gateway Default SSH Password
Symantec Messaging Gateway 9.5 Default SSH Password
Symantec Messaging Gateway 9.5/9.5.1 - SSH Default Password Security Bypass (Metasploit)
Symantec Messaging Gateway 9.5 Default SSH Password Vulnerability