CVE-2014-7287
01.02.2015, 02:59
The key-management component in Symantec PGP Universal Server and Encryption Management Server before 3.3.2 MP7 allows remote attackers to trigger unintended content in outbound e-mail messages via a crafted key UID value in an inbound e-mail message, as demonstrated by the outbound Subject header.
Vendor | Product | Version |
---|---|---|
symantec | encryption_management_server | 𝑥 ≤ 3.3.2 |
symantec | pgp_universal_server | 𝑥 ≤ 3.3.2 |
𝑥
= Vulnerable software versions
References