Symantec Web Gateway Remote Shell Command Execution Vulnerability
Publish Date: 21 juillet 2015
Gravité: : Critique
Identifiant(s) CVE: : CVE-2012-2953
Date du conseil: 21 juillet 2015
Description
The management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows remote attackers to execute arbitrary commands via crafted input to application scripts.
Information Exposure Rating:
Apply associated Trend Micro DPI Rules.
Solutions
Trend Micro Deep Security DPI Rule Number: 1005181
Trend Micro Deep Security DPI Rule Name: 1005181 - Symantec Web Gateway Remote Shell Command Execution Vulnerability
Affected software and version:
- symantec web_gateway 5.0
- symantec web_gateway 5.0.1
- symantec web_gateway 5.0.2
- symantec web_gateway 5.0.3