Kaspersky Secure Mail Gateway...

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### 1. Advisory Information * Title: Kaspersky Secure Mail Gateway Multiple Vulnerabilities * Advisory ID: CORE-2017-0010 * Advisory URL: http://www.coresecurity.com/advisories/kaspersky-secure-mail-gateway-multiple-vulnerabilities * Date published: 2018-02-01 * Date of last update: 2018-02-01 * Vendors contacted: Kaspersky Lab * Release mode: Coordinated release ### 2. Vulnerability Information * Class: Cross-Site Request Forgery [CWE-352], Improper Neutralization of Special Elements in Output Used by a Downstream Component [CWE-74], Improper Privilege Management [CWE-269], Improper Neutralization of Input During Web Page Generation [CWE-79] * Impact: Code execution * Remotely Exploitable: Yes * Locally Exploitable: Yes * CVE Name: CVE-pending-assignment-1, CVE-pending-assignment-2, CVE-pending-assignment-3, CVE-pending-assignment-4 ### 3. Vulnerability Description From Kaspersky Labs website: Kaspersky Secure Mail Gateway [1] gives you a fully integrated email system; mail...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息