CVE-2017-6324
Last modified
CVE-2017-6324 is a vulnerability of currently unknown severity. The Symantec Messaging Gateway, when processing a specific email attachment, can allow a malformed or corrupted Word file with a potentially malicious macro through despite the administrator having the 'disarm' functionality enabled. This constitutes a 'bypass' of the disarm functionality resident to the application..
Description
The Symantec Messaging Gateway, when processing a specific email attachment, can allow a malformed or corrupted Word file with a potentially malicious macro through despite the administrator having the 'disarm' functionality enabled. This constitutes a 'bypass' of the disarm functionality resident to the application.
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Symantec | Messaging Gateway | <= 10.6.2 |
References
- http://www.securityfocus.com/bid/98889Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/98889Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-6324?
How severe is CVE-2017-6324?
How do I fix CVE-2017-6324?
Are you affected by CVE-2017-6324?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
