Multiple cross-site scripting (XSS) vulnerabilities in PHP scripts in the management console on Symantec Web Gateway (SWG) appliances with software before 5.2.2 DB 5.0.0.1277 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, as demonstrated an attack against admin_messages.php.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: symantec
Published: 2015-09-20T20:00:00
Updated: 2024-08-06T06:59:04.089Z
Reserved: 2015-07-28T00:00:00
Link: CVE-2015-5691
Vulnrichment
No data.
NVD
Status : Modified
Published: 2015-09-20T20:59:06.243
Modified: 2024-11-21T02:33:39.050
Link: CVE-2015-5691
Redhat
No data.