VYPR
High severity8.8NVD Advisory· Published May 11, 2017· Updated May 13, 2026

CVE-2016-9092

CVE-2016-9092

Description

The Symantec Content Analysis (CA) 1.3, 2.x prior to 2.2.1.1, and Mail Threat Defense (MTD) 1.1 management consoles are susceptible to a cross-site request forging (CSRF) vulnerability. A remote attacker can use phishing or other social engineering techniques to access the management console with the privileges of an authenticated administrator user.

Affected products

5
  • cpe:2.3:a:symantec:content_analysis:1.3:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:symantec:content_analysis:1.3:*:*:*:*:*:*:*
    • cpe:2.3:a:symantec:content_analysis:2.1:*:*:*:*:*:*:*
  • cpe:2.3:a:symantec:mail_threat_defense:1.1:*:*:*:*:*:*:*
  • Symantec Corporation/Content Analysis (CA)v5
    Range: 1.3
  • Symantec Corporation/Mail Threat Defense (MTD)v5
    Range: 1.1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.