CVE-2013-1616

The management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 allows remote attackers to execute arbitrary commands by injecting a command into an application script.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:symantec:web_gateway:*:*:*:*:*:*:*:*
cpe:2.3:a:symantec:web_gateway:5.0:*:*:*:*:*:*:*
cpe:2.3:a:symantec:web_gateway:5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:symantec:web_gateway:5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:symantec:web_gateway:5.0.3:*:*:*:*:*:*:*
cpe:2.3:a:symantec:web_gateway:5.0.3.18:*:*:*:*:*:*:*
OR cpe:2.3:h:symantec:web_gateway_appliance_8450:-:*:*:*:*:*:*:*
cpe:2.3:h:symantec:web_gateway_appliance_8490:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2013-08-01 13:32

Updated : 2023-12-10 11:16


NVD link : CVE-2013-1616

Mitre link : CVE-2013-1616

CVE.ORG link : CVE-2013-1616


JSON object : View

Products Affected

symantec

  • web_gateway_appliance_8450
  • web_gateway
  • web_gateway_appliance_8490
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')