Check Point Reference: | CPAI-2013-1626 |
Date Published: | 19 Mar 2013 |
Severity: | High |
Last Updated: | Tuesday 01 January, 2013 |
Source: | CVE-2012-0308 |
Protection Provided by: | |
Who is Vulnerable? | Symantec Messaging Gateway 9.5.x |
Vulnerability Description | A cross-site request forgery (CSRF) vulnerability has been reported in Symantec Messaging Gateway. The vulnerability is due to errors while validating user input. A remote attacker can exploit this vulnerability by enticing a user to open a specially crafted URI. Successful exploitation would allow an attacker to create a new administrator user |