Vulnerability Patched In Symantec Brightmail Gateway


Recommended Posts

27 April 2009, 10:48

Vulnerability patched in Symantec Brightmail Gateway

Symantec has released an update for its Brightmail Gateway email security appliance to fix a cross-site scripting and privilege escalation vulnerability in the appliances web based Control Centre. Attackers could exploit the vulnerabilities from the internal network as the Control Centre failed to properly filter client input from authorised users of the Control Centre console. The update is available via the Software Update feature of Brightmail and is also available to registered users to download. See also: Symantec Brightmail Gateway Appliance Cross-site Scripting and Elevation of Privilege, advisory from Symantec.

Heise security - http://www.h-online.com/security/Vulnerabi...y--/news/113155

Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...