Release date:
Updated on:
Affected Systems:
Symantec Message Filter
Description:
--------------------------------------------------------------------------------
Bugtraq id: 54134
CVE (CAN) ID: CVE-2012-0302
Symantec Message Filter defends against spam, email fraud, viruses, and other undesirable emails on the Internet gateway in a precise, effective, and easy-to-manage manner.
Symantec Message Filter 6.3 has a cross-site scripting vulnerability. Attackers can exploit this vulnerability to execute arbitrary script code and steal Cookie authentication creden.
<* Source: Ben Williams
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Symantec
--------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.symantec.com/business/security_response/