Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
advanced secure gateway vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2018-18370
The ASG/ProxySG FTP proxy WebFTP mode allows intercepting FTP connections where a user accesses an FTP server via a ftp:// URL in a web browser. A stored cross-site scripting (XSS) vulnerability in the WebFTP mode allows a remote malicious user to inject malicious JavaScript code...
Broadcom Advanced Secure Gateway 6.6
Broadcom Advanced Secure Gateway
Broadcom Symantec Proxysg
Broadcom Symantec Proxysg 6.6
356
VMScore
CVE-2018-18371
The ASG/ProxySG FTP proxy WebFTP mode allows intercepting FTP connections where a user accesses an FTP server via a ftp:// URL in a web browser. An information disclosure vulnerability in the WebFTP mode allows a malicious user to obtain plaintext authentication credentials for a...
Broadcom Symantec Proxysg
Broadcom Advanced Secure Gateway
Broadcom Symantec Proxysg 6.6
Broadcom Advanced Secure Gateway 6.6
516
VMScore
CVE-2016-9099
Symantec Advanced Secure Gateway (ASG) 6.6, ASG 6.7 before 6.7.2.1, ProxySG 6.5 before 6.5.10.6, ProxySG 6.6, and ProxySG 6.7 before 6.7.2.1 are susceptible to an open redirection vulnerability. A remote attacker can use a crafted management console URL in a phishing attack to re...
Broadcom Advanced Secure Gateway
Broadcom Symantec Proxysg
Broadcom Advanced Secure Gateway 6.6
Broadcom Symantec Proxysg 6.6
570
VMScore
CVE-2021-46825
Symantec Advanced Secure Gateway (ASG) and ProxySG are susceptible to an HTTP desync vulnerability. When a remote unauthenticated attacker and other web clients communicate through the proxy with the same web server, the attacker can send crafted HTTP requests and cause the proxy...
Broadcom Advanced Secure Gateway 6.7
Broadcom Proxysg 6.7
Broadcom Proxysg 7.3
Broadcom Advanced Secure Gateway 7.3
383
VMScore
CVE-2016-10257
The Symantec Advanced Secure Gateway (ASG) 6.6, ASG 6.7 (before 6.7.2.1), ProxySG 6.5 (before 6.5.10.6), ProxySG 6.6, and ProxySG 6.7 (before 6.7.2.1) management console is susceptible to a reflected XSS vulnerability. A remote attacker can use a crafted management console URL in...
Broadcom Advanced Secure Gateway
Broadcom Advanced Secure Gateway 6.6
Broadcom Symantec Proxysg
Broadcom Symantec Proxysg 6.6
668
VMScore
CVE-2018-5241
Symantec Advanced Secure Gateway (ASG) 6.6 and 6.7, and ProxySG 6.5, 6.6, and 6.7 are susceptible to a SAML authentication bypass vulnerability. The products can be configured with a SAML authentication realm to authenticate network users in intercepted proxy traffic. When parsin...
Broadcom Symantec Proxysg 6.6
Broadcom Advanced Secure Gateway 6.7
Broadcom Symantec Proxysg 6.7
Broadcom Symantec Proxysg 6.5
Broadcom Advanced Secure Gateway 6.6
NA
CVE-2023-23955
Advanced Secure Gateway and Content Analysis, before 7.3.13.1 / 3.1.6.0, may be susceptible to a Server-Side Request Forgery vulnerability.
Broadcom Content Analysis
Broadcom Advanced Secure Gateway
516
VMScore
CVE-2015-8597
Open redirect vulnerability in Blue Coat ProxySG 6.5 prior to 6.5.8.8 and 6.6 and Advanced Secure Gateway (ASG) 6.6 might allow remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via a base64-encoded URL in conjunction with a "clear ...
Bluecoat Proxysg
Bluecoat Advanced Secure Gateway 6.6
570
VMScore
CVE-2019-18375
The ASG and ProxySG management consoles are susceptible to a session hijacking vulnerability. A remote attacker, with access to the appliance management interface, can hijack the session of a currently logged-in user and access the management console.
Broadcom Advanced Secure Gateway
Broadcom Symantec Proxysg
312
VMScore
CVE-2017-13678
Stored XSS vulnerability in the Symantec Advanced Secure Gateway (ASG) and ProxySG management consoles. A malicious appliance administrator can inject arbitrary JavaScript code in the management console web client application.
Broadcom Advanced Secure Gateway
Broadcom Symantec Proxysg
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2006-4304
CVE-2024-4240
arbitrary
CVE-2024-31601
XSS
CVE-2023-20198
CVE-2024-4256
CVE-2024-3342
encryption
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »