vendor:
Symantec Messaging Gateway
by:
Ben Williams
7,5
CVSS
HIGH
CSRF
352
CWE
Product Name: Symantec Messaging Gateway
Affected Version From: 9.5.3-3
Affected Version To: 9.5.3-3
Patch Exists: YES
Related CWE: N/A
CPE: a:symantec:symantec_messaging_gateway
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2012
Symantec Messaging Gateway – Easy CSRF to add a backdoor-administrator (for example)
It would be relatively easy for an attacker to add a backdoor-administrator to the system, by getting a logged-in adminstrator to view a webpage with a specially crafted image-tag. This is partly due to the fact that GET and POST requests are interchangeable, there is no password protection on sensitive functions, and there is not CSRF protection in the product.
Mitigation:
Symantec have released a patch to fix this issue.