Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
broadcom advanced secure gateway 6.6 vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2018-5241
Symantec Advanced Secure Gateway (ASG) 6.6 and 6.7, and ProxySG 6.5, 6.6, and 6.7 are susceptible to a SAML authentication bypass vulnerability. The products can be configured with a SAML authentication realm to authenticate network users in intercepted proxy traffic. When parsin...
Broadcom Symantec Proxysg 6.6
Broadcom Advanced Secure Gateway 6.7
Broadcom Symantec Proxysg 6.7
Broadcom Symantec Proxysg 6.5
Broadcom Advanced Secure Gateway 6.6
7.8
CVSSv3
CVE-2016-9100
Symantec Advanced Secure Gateway (ASG) 6.6 before 6.6.5.13, ASG 6.7 before 6.7.3.1, ProxySG 6.5 before 6.5.10.6, ProxySG 6.6 before 6.6.5.13, and ProxySG 6.7 before 6.7.3.1 are susceptible to an information disclosure vulnerability. An attacker with local access to the client hos...
Broadcom Advanced Secure Gateway
Broadcom Symantec Proxysg
7.5
CVSSv3
CVE-2019-11477
Jonathan Looney discovered that the TCP_SKB_CB(skb)->tcp_gso_segs value was subject to an integer overflow in the Linux kernel when handling TCP Selective Acknowledgments (SACKs). A remote attacker could use this to cause a denial of service. This has been fixed in stable kern...
Linux Linux Kernel
F5 Big-ip Advanced Firewall Manager
F5 Big-ip Advanced Firewall Manager 15.0.0
F5 Big-ip Access Policy Manager
F5 Big-ip Access Policy Manager 15.0.0
F5 Big-ip Application Acceleration Manager
F5 Big-ip Application Acceleration Manager 15.0.0
F5 Big-ip Link Controller
F5 Big-ip Link Controller 15.0.0
F5 Big-ip Policy Enforcement Manager
F5 Big-ip Policy Enforcement Manager 15.0.0
F5 Big-ip Webaccelerator
F5 Big-ip Webaccelerator 15.0.0
F5 Big-ip Application Security Manager
F5 Big-ip Application Security Manager 15.0.0
F5 Big-ip Local Traffic Manager
F5 Big-ip Local Traffic Manager 15.0.0
F5 Big-ip Fraud Protection Service
F5 Big-ip Fraud Protection Service 15.0.0
F5 Big-ip Global Traffic Manager
F5 Big-ip Global Traffic Manager 15.0.0
F5 Big-ip Analytics
7 Github repositories
1 Article
7.5
CVSSv3
CVE-2019-11478
Jonathan Looney discovered that the TCP retransmission queue implementation in tcp_fragment in the Linux kernel could be fragmented when handling certain TCP Selective Acknowledgment (SACK) sequences. A remote attacker could use this to cause a denial of service. This has been fi...
Linux Linux Kernel
F5 Big-ip Advanced Firewall Manager
F5 Big-ip Advanced Firewall Manager 15.0.0
F5 Big-ip Access Policy Manager
F5 Big-ip Access Policy Manager 15.0.0
F5 Big-ip Application Acceleration Manager
F5 Big-ip Application Acceleration Manager 15.0.0
F5 Big-ip Link Controller
F5 Big-ip Link Controller 15.0.0
F5 Big-ip Policy Enforcement Manager
F5 Big-ip Policy Enforcement Manager 15.0.0
F5 Big-ip Webaccelerator
F5 Big-ip Webaccelerator 15.0.0
F5 Big-ip Application Security Manager
F5 Big-ip Application Security Manager 15.0.0
F5 Big-ip Local Traffic Manager
F5 Big-ip Local Traffic Manager 15.0.0
F5 Big-ip Fraud Protection Service
F5 Big-ip Fraud Protection Service 15.0.0
F5 Big-ip Global Traffic Manager
F5 Big-ip Global Traffic Manager 15.0.0
F5 Big-ip Analytics
4 Github repositories
1 Article
7.2
CVSSv3
CVE-2016-9097
The Symantec Advanced Secure Gateway (ASG) 6.6 before 6.6.5.8, ProxySG 6.5 prior 6.5.10.6, ProxySG 6.6 before 6.6.5.8, and ProxySG 6.7 before 6.7.1.2 management consoles do not, under certain circumstances, correctly authorize administrator users. A malicious administrator with r...
Broadcom Advanced Secure Gateway 6.6.5.1
Broadcom Advanced Secure Gateway 6.6.4
Broadcom Advanced Secure Gateway 6.6.4.3
Broadcom Advanced Secure Gateway 6.6.3
Broadcom Advanced Secure Gateway 6.6
Broadcom Symantec Proxysg 6.5.6.1
Broadcom Symantec Proxysg 6.5.2.10
Broadcom Symantec Proxysg 6.5
Broadcom Symantec Proxysg 6.5.9.8
Broadcom Symantec Proxysg 6.5.9.2
Broadcom Symantec Proxysg 6.5.2
Broadcom Symantec Proxysg 6.5.1
Broadcom Symantec Proxysg 6.5.7.6
Broadcom Symantec Proxysg 6.5.9.14
Broadcom Symantec Proxysg 6.5.5.7
Broadcom Symantec Proxysg 6.5.9.10
Broadcom Symantec Proxysg 6.5.4.1
Broadcom Symantec Proxysg 6.6
Broadcom Symantec Proxysg 6.6.2.2
Broadcom Symantec Proxysg 6.6.3
Broadcom Symantec Proxysg 6.6.4.3
Broadcom Symantec Proxysg 6.6.4
6.5
CVSSv3
CVE-2018-18371
The ASG/ProxySG FTP proxy WebFTP mode allows intercepting FTP connections where a user accesses an FTP server via a ftp:// URL in a web browser. An information disclosure vulnerability in the WebFTP mode allows a malicious user to obtain plaintext authentication credentials for a...
Broadcom Symantec Proxysg
Broadcom Advanced Secure Gateway
Broadcom Symantec Proxysg 6.6
Broadcom Advanced Secure Gateway 6.6
6.1
CVSSv3
CVE-2018-18370
The ASG/ProxySG FTP proxy WebFTP mode allows intercepting FTP connections where a user accesses an FTP server via a ftp:// URL in a web browser. A stored cross-site scripting (XSS) vulnerability in the WebFTP mode allows a remote malicious user to inject malicious JavaScript code...
Broadcom Advanced Secure Gateway 6.6
Broadcom Advanced Secure Gateway
Broadcom Symantec Proxysg
Broadcom Symantec Proxysg 6.6
6.1
CVSSv3
CVE-2016-10257
The Symantec Advanced Secure Gateway (ASG) 6.6, ASG 6.7 (before 6.7.2.1), ProxySG 6.5 (before 6.5.10.6), ProxySG 6.6, and ProxySG 6.7 (before 6.7.2.1) management console is susceptible to a reflected XSS vulnerability. A remote attacker can use a crafted management console URL in...
Broadcom Advanced Secure Gateway
Broadcom Advanced Secure Gateway 6.6
Broadcom Symantec Proxysg
Broadcom Symantec Proxysg 6.6
6.1
CVSSv3
CVE-2016-9099
Symantec Advanced Secure Gateway (ASG) 6.6, ASG 6.7 before 6.7.2.1, ProxySG 6.5 before 6.5.10.6, ProxySG 6.6, and ProxySG 6.7 before 6.7.2.1 are susceptible to an open redirection vulnerability. A remote attacker can use a crafted management console URL in a phishing attack to re...
Broadcom Advanced Secure Gateway
Broadcom Symantec Proxysg
Broadcom Advanced Secure Gateway 6.6
Broadcom Symantec Proxysg 6.6
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-32976
CVE-2024-33557
CVE-2024-36801
CVE-2024-35654
authentication bypass
CVE-2024-24919
CSRF
code execution
CVE-2024-27348
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started