9.8
CVSSv3

CVE-2021-30648

Published: 30/06/2021 Updated: 06/07/2021
CVSS v2 Base Score: 9 | Impact Score: 8.5 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 801
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:C

Vulnerability Summary

The Symantec Advanced Secure Gateway (ASG) and ProxySG web management consoles are susceptible to an authentication bypass vulnerability. An unauthenticated attacker can execute arbitrary CLI commands, view/modify the appliance configuration and policy, and shutdown/restart the appliance.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

broadcom symantec proxysg

broadcom symantec_advanced_secure_gateway_s200-30_firmware

broadcom symantec_advanced_secure_gateway_s200-40_firmware

broadcom symantec_advanced_secure_gateway_s400-20_firmware

broadcom symantec_advanced_secure_gateway_s400-30_firmware

broadcom symantec_advanced_secure_gateway_s400-40_firmware

broadcom symantec_advanced_secure_gateway_500-10_firmware

broadcom symantec_advanced_secure_gateway_s500-20_firmware