Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
asg vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2018-5241
Symantec Advanced Secure Gateway (ASG) 6.6 and 6.7, and ProxySG 6.5, 6.6, and 6.7 are susceptible to a SAML authentication bypass vulnerability. The products can be configured with a SAML authentication realm to authenticate network users in intercepted proxy traffic. When parsin...
Broadcom Symantec Proxysg 6.6
Broadcom Advanced Secure Gateway 6.7
Broadcom Symantec Proxysg 6.7
Broadcom Symantec Proxysg 6.5
Broadcom Advanced Secure Gateway 6.6
4
CVSSv2
CVE-2018-18371
The ASG/ProxySG FTP proxy WebFTP mode allows intercepting FTP connections where a user accesses an FTP server via a ftp:// URL in a web browser. An information disclosure vulnerability in the WebFTP mode allows a malicious user to obtain plaintext authentication credentials for a...
Broadcom Symantec Proxysg
Broadcom Advanced Secure Gateway
Broadcom Symantec Proxysg 6.6
Broadcom Advanced Secure Gateway 6.6
4.3
CVSSv2
CVE-2018-18370
The ASG/ProxySG FTP proxy WebFTP mode allows intercepting FTP connections where a user accesses an FTP server via a ftp:// URL in a web browser. A stored cross-site scripting (XSS) vulnerability in the WebFTP mode allows a remote malicious user to inject malicious JavaScript code...
Broadcom Advanced Secure Gateway 6.6
Broadcom Advanced Secure Gateway
Broadcom Symantec Proxysg
Broadcom Symantec Proxysg 6.6
5.8
CVSSv2
CVE-2016-9099
Symantec Advanced Secure Gateway (ASG) 6.6, ASG 6.7 before 6.7.2.1, ProxySG 6.5 before 6.5.10.6, ProxySG 6.6, and ProxySG 6.7 before 6.7.2.1 are susceptible to an open redirection vulnerability. A remote attacker can use a crafted management console URL in a phishing attack to re...
Broadcom Advanced Secure Gateway
Broadcom Symantec Proxysg
Broadcom Advanced Secure Gateway 6.6
Broadcom Symantec Proxysg 6.6
NA
CVE-2024-30864
netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /admin/config_ISCGroupTimePolicy.php.
NA
CVE-2024-30870
netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /admin/address_interpret.php.
NA
CVE-2024-30858
netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /admin/edit_fire_wall.php.
NA
CVE-2024-30859
netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /admin/config_ISCGroupSSLCert.php.
NA
CVE-2024-30860
netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /admin/export_excel_user.php.
NA
CVE-2024-30862
netentsec NS-ASG 6.3 is vulnerable to SQL Injection via /3g/index.php.
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2023-52689
CVE-2024-23803
client side
CVE-2023-52696
information disclosure
CVE-2024-35843
CVE-2024-27130
CVE-2023-52697
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »