CVE-2013-1617 - CERT CVE
ID CVE-2013-1617
Sažetak Multiple SQL injection vulnerabilities in the management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 allow remote authenticated administrators to execute arbitrary SQL commands via unspecified vectors.
Reference
CVSS
Base: 7.4
Impact: 10.0
Exploitability:4.4
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK MEDIUM SINGLE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE COMPLETE COMPLETE
CVSS vektor AV:A/AC:M/Au:S/C:C/I:C/A:C
Zadnje važnije ažuriranje 17-01-2014 - 05:13
Objavljeno 01-08-2013 - 13:32