CVE-2016-2204

Severity CVSS v4.0:
Pending analysis
Type:
CWE-74 Injection
Publication date:
22/04/2016
Last modified:
12/04/2025

Description

The management console on Symantec Messaging Gateway (SMG) Appliance devices before 10.6.1 allows local users to obtain root-shell access via crafted terminal-window input.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:symantec:messaging_gateway:*:7:*:*:*:*:*:* 10.6.0 (including)
cpe:2.3:a:symantec:messaging_gateway:10.6.0:1:*:*:*:*:*:*
cpe:2.3:a:symantec:messaging_gateway:10.6.0:2:*:*:*:*:*:*
cpe:2.3:a:symantec:messaging_gateway:10.6.0:3:*:*:*:*:*:*
cpe:2.3:a:symantec:messaging_gateway:10.6.0:4:*:*:*:*:*:*
cpe:2.3:a:symantec:messaging_gateway:10.6.0:5:*:*:*:*:*:*
cpe:2.3:a:symantec:messaging_gateway:10.6.0:6:*:*:*:*:*:*