CVE-2016-2203

Severity CVSS v4.0:
Pending analysis
Type:
CWE-255 Credentials Management
Publication date:
22/04/2016
Last modified:
12/04/2025

Description

The management console on Symantec Messaging Gateway (SMG) Appliance devices before 10.6.1 allows local users to discover an encrypted AD password by leveraging certain read privileges.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:symantec:messaging_gateway:10.6.0:patch3:*:*:*:*:*:*
cpe:2.3:a:symantec:messaging_gateway:10.6.0:patch5:*:*:*:*:*:*
cpe:2.3:a:symantec:messaging_gateway:10.6.0:patch7:*:*:*:*:*:*