Vulnerability Details CVE-2019-18379
Symantec Messaging Gateway, prior to 10.7.3, may be susceptible to a server-side request forgery (SSRF) exploit, which is a type of issue that can let an attacker send crafted requests from the backend server of a vulnerable web application or access services available through the loopback interface.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 75.1%
CVSS Severity
CVSS v3 Score 7.3
CVSS v2 Score 7.5
Products affected by CVE-2019-18379
-
cpe:2.3:a:symantec:messaging_gateway:10.0
-
cpe:2.3:a:symantec:messaging_gateway:10.0.1
-
cpe:2.3:a:symantec:messaging_gateway:10.0.2
-
cpe:2.3:a:symantec:messaging_gateway:10.0.3
-
cpe:2.3:a:symantec:messaging_gateway:10.5.0
-
cpe:2.3:a:symantec:messaging_gateway:10.5.1
-
cpe:2.3:a:symantec:messaging_gateway:10.5.2
-
cpe:2.3:a:symantec:messaging_gateway:10.5.4
-
cpe:2.3:a:symantec:messaging_gateway:10.6.0
-
cpe:2.3:a:symantec:messaging_gateway:10.6.1
-
cpe:2.3:a:symantec:messaging_gateway:10.6.2
-
cpe:2.3:a:symantec:messaging_gateway:10.6.3
-
cpe:2.3:a:symantec:messaging_gateway:10.6.4
-
cpe:2.3:a:symantec:messaging_gateway:10.6.5
-
cpe:2.3:a:symantec:messaging_gateway:10.6.6
-
cpe:2.3:a:symantec:messaging_gateway:10.7.0
-
cpe:2.3:a:symantec:messaging_gateway:9.5
-
cpe:2.3:a:symantec:messaging_gateway:9.5.1
-
cpe:2.3:a:symantec:messaging_gateway:9.5.2
-
cpe:2.3:a:symantec:messaging_gateway:9.5.3
-
cpe:2.3:a:symantec:messaging_gateway:9.5.4