Filtered by vendor Broadcom Subscriptions
Filtered by product Symantec Messaging Gateway Subscriptions
Total 5 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-23615 1 Broadcom 1 Symantec Messaging Gateway 2024-01-31 9.8 Critical
A buffer overflow vulnerability exists in Symantec Messaging Gateway versions 10.5 and before. A remote, anonymous attacker can exploit this vulnerability to achieve remote code execution as root.
CVE-2024-23614 1 Broadcom 1 Symantec Messaging Gateway 2024-01-31 9.8 Critical
A buffer overflow vulnerability exists in Symantec Messaging Gateway versions 9.5 and before. A remote, anonymous attacker can exploit this vulnerability to achieve remote code execution as root.
CVE-2021-30651 1 Broadcom 1 Symantec Messaging Gateway 2023-08-08 4.9 Medium
A malicious authenticated SMG administrator user can obtain passwords for external LDAP/Active Directory servers that they might not otherwise be authorized to access.
CVE-2020-12594 1 Broadcom 1 Symantec Messaging Gateway 2021-07-21 7.2 High
A privilege escalation flaw allows a malicious, authenticated, privileged CLI user to escalate their privileges on the system and gain full control over the SMG appliance. This affects SMG prior to 10.7.4.
CVE-2020-12595 1 Broadcom 1 Symantec Messaging Gateway 2020-12-14 4.9 Medium
An information disclosure flaw allows a malicious, authenticated, privileged web UI user to obtain a password for a remote SCP backup server that they might not otherwise be authorized to access. This affects SMG prior to 10.7.4.