CVE-2013-1616

Symantec Web Gateway < 5.1 - OS Command Injection

Title source: rule
STIX 2.1

Description

The management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 allows remote attackers to execute arbitrary commands by injecting a command into an application script.

Exploits (1)

exploitdb WRITEUP VERIFIED
by SEC Consult · textwebappsphp
https://www.exploit-db.com/exploits/27136

Scores

EPSS 0.1566
EPSS Percentile 94.7%

Details

CWE
CWE-78
Status published
Products (8)
symantec/web_gateway 5.0
symantec/web_gateway 5.0.1
symantec/web_gateway 5.0.2
symantec/web_gateway 5.0.3
symantec/web_gateway 5.0.3.18
symantec/web_gateway < 5.1
symantec/web_gateway_appliance_8450
symantec/web_gateway_appliance_8490
Published Aug 01, 2013
Tracked Since Feb 18, 2026