Skip to main content

CVE-2017-6327

8.8
HIGHCVSS v3.1 Base Score
76.79%
HIGH RiskEPSS (99th percentile)
KEV
NVD-CWE-noinfo

The Symantec Messaging Gateway before 10.6.3-267 can encounter an issue of remote code execution, which describes a situation whereby an individual may obtain the ability to execute commands remotely on a target machine or in a target process. In this type of occurrence, after gaining access to the system, the attacker may attempt to elevate their privileges.

Published: 8/11/2017
Modified: 4/21/2026
Back to CVE Lookup

ACTIVELY EXPLOITED IN THE WILD

This vulnerability is listed in the CISA Known Exploited Vulnerabilities (KEV) catalog.

Vulnerability Name:

Symantec Messaging Gateway Remote Code Execution Vulnerability

Vendor / Product:

Symantec Symantec Messaging Gateway

Required Action:

Apply updates per vendor instructions.

Due Date: 5/3/2022(OVERDUE)
Added to KEV:

11/3/2021

Notes:

https://nvd.nist.gov/vuln/detail/CVE-2017-6327

Vulnerability Summary

CVSS v3 Score

8.8HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CVSS v2 Score

6.5

AV:N/AC:L/Au:S/C:P/I:P/A:P

EPSS Score (Exploitation Probability)

76.79%HIGH Exploitation Risk
99th percentile

This vulnerability has a 76.79% probability of being exploited in the next 30 days, ranking higher than 99% of all scored CVEs.

CWE Classification

NVD-CWE-noinfo

Related Vulnerabilities