Vulnerability Intelligence Report
CVE-2018-12242
The Symantec Messaging Gateway product prior to 10.6.6 may be susceptible to an authentication bypass exploit, which is a type of issue that can allow attackers to potentially circumvent security mechanisms currently in place and gain access to the system or network.
No Active Exploit Signals
CVSS Base Score
9.8
CRITICAL
EPSS Probability:2.95%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| Symantec Corporation | Symantec Messaging Gateway | Prior to 10.6.6 (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
2.951%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Symantec - A Division of Broadcom · Vendor · USA |
| Reserved | 2018-06-12T00:00:00 |
| Published | 2018-09-19T15:00:00 |
| Patch Date | 2018-09-12 |
| Last Updated | 2024-09-16T18:55:16 |
Community Chatter & Buzz