← Back

Messaging Gateway

messaging_gateway

Vendor: Symantec • 25 CVEs

CVEs (25)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Symantec
1Messaging Gateway
Apr 29, 2026
Aug 29, 2012
N/A· v4
N/A· v3
3.3 LOW· v2
Symantec Messaging Gateway (SMG) before 10.0 allows remote attackers to obtain potentially sensitive information about component versions via unspecified vectors.
1Symantec
1Messaging Gateway
Apr 29, 2026
Aug 29, 2012
N/A· v4
N/A· v3
7.7 HIGH· v2
Symantec Messaging Gateway (SMG) before 10.0 allows remote authenticated users to modify the web application by leveraging access to the management interface.
1Symantec
1Messaging Gateway
Apr 29, 2026
Aug 29, 2012
N/A· v4
N/A· v3
7.9 HIGH· v2
Symantec Messaging Gateway (SMG) before 10.0 has a default password for an unspecified account, which makes it easier for remote attackers to obtain privileged access via an SSH session.
1Symantec
1Messaging Gateway
Apr 29, 2026
Aug 29, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Cross-site request forgery (CSRF) vulnerability in Symantec Messaging Gateway (SMG) before 10.0 allows remote attackers to hijack the authentication of administrators.
1Symantec
1Messaging Gateway
Apr 29, 2026
Aug 29, 2012
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Multiple cross-site scripting (XSS) vulnerabilities in Symantec Messaging Gateway (SMG) before 10.0 allow remote attackers to inject arbitrary web script or HTML via (1) web content or (2) e-mail content.