A malicious authenticated SMG administrator user can obtain passwords for external LDAP/Active Directory servers that they might not otherwise be authorized to access.
References
Link | Resource |
---|---|
https://support.broadcom.com/external/content/SecurityAdvisories/0/20652 | Vendor Advisory |
Configurations
Information
Published : 2022-06-24 08:15
Updated : 2022-07-07 07:59
NVD link : CVE-2021-30651
Mitre link : CVE-2021-30651
JSON object : View
CWE
CWE-522
Insufficiently Protected Credentials
Products Affected
broadcom
- symantec_messaging_gateway