Lucene search

K
cvelistSymantecCVELIST:CVE-2020-12595
HistoryDec 10, 2020 - 5:21 a.m.

CVE-2020-12595

2020-12-1005:21:49
symantec
www.cve.org
1
information disclosure
smg
web ui
password
remote scp backup server
authenticated
privileged user
cve-2020-12595

AI Score

5

Confidence

High

EPSS

0.001

Percentile

28.4%

An information disclosure flaw allows a malicious, authenticated, privileged web UI user to obtain a password for a remote SCP backup server that they might not otherwise be authorized to access. This affects SMG prior to 10.7.4.

CNA Affected

[
  {
    "product": "Symantec Messaging Gateway (SMG)",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "SMG prior to 10.7.4"
      }
    ]
  }
]

AI Score

5

Confidence

High

EPSS

0.001

Percentile

28.4%

Related for CVELIST:CVE-2020-12595