CVE-2009-0064

high

Description

Multiple unspecified vulnerabilities in the Control Center in Symantec Brightmail Gateway Appliance before 8.0.1 allow remote authenticated users to gain privileges, and possibly obtain sensitive information or hijack sessions of arbitrary users, via vectors involving (1) administrative scripts or (2) console functions.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/50075

http://www.vupen.com/english/advisories/2009/1155

http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2009&suid=20090423_01

http://www.securityfocus.com/bid/34639

http://securitytracker.com/id?1022117

http://secunia.com/advisories/34885

http://osvdb.org/53945

Details

Source: Mitre, NVD

Published: 2009-04-24

Updated: 2026-06-16

Risk Information

CVSS v2

Base Score: 9

Vector: CVSS2#AV:N/AC:L/Au:S/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 8.8

Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.01488