Stored XSS vulnerability in the Symantec Advanced Secure Gateway (ASG) and ProxySG management consoles. A malicious appliance administrator can inject arbitrary JavaScript code in the management console web client application.
2018-04-11T14:29:00.377
2024-11-21T03:11:24.677
Modified
CVSSv3.0: 4.8 (MEDIUM)
AV:N/AC:M/Au:S/C:N/I:P/A:N
6.8
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | broadcom | advanced_secure_gateway | < 6.6.5.14 | Yes |
Application | broadcom | advanced_secure_gateway | < 6.7.3.7 | Yes |
Application | broadcom | advanced_secure_gateway | < 6.7.4.107 | Yes |
Application | broadcom | symantec_proxysg | < 6.5.10.8 | Yes |
Application | broadcom | symantec_proxysg | < 6.6.5.14 | Yes |
Application | broadcom | symantec_proxysg | < 6.7.3.7 | Yes |
Application | broadcom | symantec_proxysg | < 6.7.4.107 | Yes |