Vulnerabilities
Vulnerable Software
Symantec:  >> Web Gateway  Security Vulnerabilities
The management GUI in Symantec Web Gateway 5.0.x before 5.0.3 does not properly restrict access to application scripts, which allows remote attackers to execute arbitrary code by (1) injecting crafted data or (2) including crafted data.
CVSS Score
10.0
EPSS Score
0.895
Published
2012-05-21
The file-management scripts in the management GUI in Symantec Web Gateway 5.0.x before 5.0.3 allow remote attackers to (1) read or (2) delete arbitrary files via unspecified vectors.
CVSS Score
6.4
EPSS Score
0.1
Published
2012-05-21
The file-management scripts in the management GUI in Symantec Web Gateway 5.0.x before 5.0.3 allow remote attackers to upload arbitrary code to a designated pathname, and possibly execute this code, via unspecified vectors.
CVSS Score
10.0
EPSS Score
0.823
Published
2012-05-21
SQL injection vulnerability in forget.php in the management GUI in Symantec Web Gateway 4.5.x allows remote attackers to execute arbitrary SQL commands via the username parameter.
CVSS Score
7.5
EPSS Score
0.011
Published
2011-07-11
SQL injection vulnerability in login.php in the GUI management console in Symantec Web Gateway 4.5 before 4.5.0.376 allows remote attackers to execute arbitrary SQL commands via the USERNAME parameter.
CVSS Score
7.5
EPSS Score
0.011
Published
2011-01-14


Contact Us

Shodan ® - All rights reserved