Unrated severityNVD Advisory· Published Feb 1, 2015· Updated May 6, 2026
CVE-2014-7287
CVE-2014-7287
Description
The key-management component in Symantec PGP Universal Server and Encryption Management Server before 3.3.2 MP7 allows remote attackers to trigger unintended content in outbound e-mail messages via a crafted key UID value in an inbound e-mail message, as demonstrated by the outbound Subject header.
Affected products
2- cpe:2.3:a:symantec:encryption_management_server:*:mp6:*:*:*:*:*:*Range: <=3.3.2
- cpe:2.3:a:symantec:pgp_universal_server:*:mp6:*:*:*:*:*:*Range: <=3.3.2
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.symantec.com/security_response/securityupdates/detail.jspnvdPatchVendor Advisory
- www.securityfocus.com/bid/72307nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1031673nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/100762nvd
News mentions
0No linked articles in our index yet.