The Symantec Advanced Secure Gateway (ASG) and ProxySG web management consoles are susceptible to an authentication bypass vulnerability. An unauthenticated attacker can execute arbitrary CLI commands, view/modify the appliance configuration and policy, and shutdown/restart the appliance.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
broadcom symantec proxysg |
||
broadcom symantec_advanced_secure_gateway_s200-30_firmware |
||
broadcom symantec_advanced_secure_gateway_s200-40_firmware |
||
broadcom symantec_advanced_secure_gateway_s400-20_firmware |
||
broadcom symantec_advanced_secure_gateway_s400-30_firmware |
||
broadcom symantec_advanced_secure_gateway_s400-40_firmware |
||
broadcom symantec_advanced_secure_gateway_500-10_firmware |
||
broadcom symantec_advanced_secure_gateway_s500-20_firmware |