Symantec.Web.Gateway.Whitelist.Command.Execution

description-logoDescription

This indicates an attack attempt to exploit a Command Injection vulnerability in Symantec Web Gateway (SWG) Management Console Interface.
The vulnerability is due to insufficient input validation in the console interface. A remote attacker may be able to exploit this to add an unauthorized whitelist entry via a crafted request.

affected-products-logoAffected Products

Symantec Web Gateway prior to 5.2.5

Impact logoImpact

System compromise: Remote attackers can execute arbitrary commands within the context of the root user.

recomended-action-logoRecommended Actions

Apply the latest update from the vendor.
https://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&
pvid=security_advisory&year=2016&suid=20161005_00

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2019-06-10 14.629 Severity:medium:high

References

https://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory& pvid=security_advisory&year=2016&suid=20161005_00