CVE-2013-1617
- EPSS 1.33%
- Published 01.08.2013 13:32:21
- Last modified 11.04.2025 00:51:21
Multiple SQL injection vulnerabilities in the management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 allow remote authenticated administrators to execute arbitrary SQL commands via unspecified vectors.
CVE-2013-1616
- EPSS 19.28%
- Published 01.08.2013 13:32:21
- Last modified 11.04.2025 00:51:21
The management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 allows remote attackers to execute arbitrary commands by injecting a command into an application script.
CVE-2012-4178
- EPSS 0.74%
- Published 07.08.2012 22:55:01
- Last modified 11.04.2025 00:51:21
SQL injection vulnerability in spywall/includes/deptUploads_data.php in Symantec Web Gateway 5.0.3.18 allows remote attackers to execute arbitrary SQL commands via the groupid parameter.
CVE-2012-2961
- EPSS 1.17%
- Published 23.07.2012 17:55:03
- Last modified 11.04.2025 00:51:21
SQL injection vulnerability in the management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
CVE-2012-2574
- EPSS 1.08%
- Published 23.07.2012 17:55:03
- Last modified 11.04.2025 00:51:21
SQL injection vulnerability in the management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, related to a "blind SQL injection" issue.
- EPSS 80.9%
- Published 23.07.2012 17:55:03
- Last modified 11.04.2025 00:51:21
The management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows remote attackers to execute arbitrary commands via crafted input to application scripts.
CVE-2012-2957
- EPSS 9.45%
- Published 23.07.2012 17:55:03
- Last modified 11.04.2025 00:51:21
The management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows local users to gain privileges by modifying files, related to a "file inclusion" issue.
- EPSS 4.38%
- Published 23.07.2012 17:55:03
- Last modified 11.04.2025 00:51:21
The management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows remote attackers to execute arbitrary shell commands via crafted input to application scripts, related to an "injection" issue.
- EPSS 8.22%
- Published 23.07.2012 17:55:03
- Last modified 11.04.2025 00:51:21
The management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows remote attackers to change arbitrary passwords via crafted input to an application script.
- EPSS 82.27%
- Published 21.05.2012 20:55:17
- Last modified 11.04.2025 00:51:21
The file-management scripts in the management GUI in Symantec Web Gateway 5.0.x before 5.0.3 allow remote attackers to upload arbitrary code to a designated pathname, and possibly execute this code, via unspecified vectors.