← back
CVE-2017-6328

CVE-2017-6328

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 2.1%
from disclosure to weapon0 days
Published on NVDAug 11
1st PoCAug 9
exploitation probability
2.1%top 20% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
The Symantec Messaging Gateway before 10.6.3-267 can encounter an issue of cross site request forgery (also known as one-click attack and is abbreviated as CSRF or XSRF), which is a type of malicious exploit of a website where unauthorized commands are transmitted from a user that the web application trusts. A CSRF attack attempts to exploit the trust that a specific website has in a user's browser.
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.