CVE Feed

    Dashboard / CVE / CVE-2017-6328

    CVE-2017-6328

    The Symantec Messaging Gateway before 10.6.3-267 can encounter an issue of cross site request forgery (also known as one-click attack and is abbreviated as CSRF or XSRF), which is a type of malicious exploit of a website where unauthorized commands are transmitted from a user that the web application trusts. A CSRF attack attempts to exploit the trust that a specific website has in a user's browser.

    Published:Aug 11, 2017
    Last Modified:Apr 20, 2025
    EPS:Aug 11, 2017
    EPSS Score:0.00864
    CVSS Score:8.8

    Affected Products

    Vendor
    Symantec
    Product
    Message Gateway

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High