CVE-2017-6327: Symantec Messaging Gateway Remote Code Execution Vulnerability

High severity, CVSS 8.8. Actively exploited: in CISA KEV since 2021-11-03. EPSS: 35.9% chance of exploitation in the next 30 days.

The Symantec Messaging Gateway before 10.6.3-267 can encounter an issue of remote code execution, which describes a situation whereby an individual may obtain the ability to execute commands remotely on a target machine or in a target process. In this type of occurrence, after gaining access to the system, the attacker may attempt to elevate their privileges.

Affected products

  • Symantec Message Gateway: before 10.6.3-267 (fixed in 10.6.3-267)

Published 2017-08-11. Last modified 2026-06-17.