CVE-2013-1617

Symantec Web Gateway < 5.1.1 - Authenticated SQL Injection

Title source: llm
STIX 2.1

Description

Multiple SQL injection vulnerabilities in the management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 allow remote authenticated administrators to execute arbitrary SQL commands via unspecified vectors.

Scores

EPSS 0.0138
EPSS Percentile 80.5%

Details

CWE
CWE-89
Status published
Products (8)
symantec/web_gateway 5.0
symantec/web_gateway 5.0.1
symantec/web_gateway 5.0.2
symantec/web_gateway 5.0.3
symantec/web_gateway 5.0.3.18
symantec/web_gateway < 5.1
symantec/web_gateway_appliance_8450
symantec/web_gateway_appliance_8490
Published Aug 01, 2013
Tracked Since Feb 18, 2026