CVE Vulnerabilities

CVE-2014-1643

Published: Feb 07, 2014 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The Web Email Protection component in Symantec Encryption Management Server (aka PGP Universal Server) before 3.3.2 allows remote authenticated users to read the stored outbound e-mail messages of arbitrary users via a modified URL.

Affected Software

NameVendorStart VersionEnd Version
Encryption_management_serverSymantec*3.3.1 (including)
Encryption_management_serverSymantec3.3.0 (including)3.3.0 (including)
Encryption_management_serverSymantec3.3.0-mp1 (including)3.3.0-mp1 (including)
Encryption_management_serverSymantec3.3.0-mp2 (including)3.3.0-mp2 (including)

References