PT-2017-16998 · Symantec · Symantec Messaging Gateway
Published
2017-06-26
·
Updated
2019-10-03
·
CVE-2017-6324
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Symantec Messaging Gateway (affected versions not specified)
Description
The issue allows a malformed or corrupted Word file with a potentially malicious macro to bypass the 'disarm' functionality, despite the administrator having this functionality enabled. This enables the potentially malicious macro to be processed.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Symantec Messaging Gateway