Cross-Site Scripting Vulnerability in Symantec Encryption Management Server
CVE-2013-4674

Currently unrated

Key Information:

Vendor
Symantec
Vendor
CVE Published:
31 July 2013

Summary

A cross-site scripting vulnerability exists in the Web Email Protection component of Symantec Encryption Management Server. This issue allows remote authenticated users to execute arbitrary web scripts or HTML by injecting malicious content through crafted encrypted email attachments. This creates a potential for exploitation, leading to unauthorized actions within the application's web interface.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.