Description
The Symantec Messaging Gateway, when processing a specific email attachment, can allow a malformed or corrupted Word file with a potentially malicious macro through despite the administrator having the 'disarm' functionality enabled. This constitutes a 'bypass' of the disarm functionality resident to the application.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-15385 | The Symantec Messaging Gateway, when processing a specific email attachment, can allow a malformed or corrupted Word file with a potentially malicious macro through despite the administrator having the 'disarm' functionality enabled. This constitutes a 'bypass' of the disarm functionality resident to the application. |
References
History
No history.
Status: PUBLISHED
Assigner: symantec
Published:
Updated: 2024-08-05T15:25:49.171Z
Reserved: 2017-02-26T00:00:00.000Z
Link: CVE-2017-6324
No data.
Status : Modified
Published: 2017-06-26T21:29:00.187
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-6324
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD