CVE-2019-18375
10.04.2020, 00:15
The ASG and ProxySG management consoles are susceptible to a session hijacking vulnerability. A remote attacker, with access to the appliance management interface, can hijack the session of a currently logged-in user and access the management console.Enginsight
Vendor | Product | Version |
---|---|---|
broadcom | advanced_secure_gateway | 6.7.4 ≤ 𝑥 < 6.7.4.10 |
broadcom | advanced_secure_gateway | 7.1 ≤ 𝑥 < 7.2.0.1 |
broadcom | symantec_proxysg | 6.7.4 ≤ 𝑥 < 6.7.4.10 |
broadcom | symantec_proxysg | 7.1 ≤ 𝑥 < 7.2.0.1 |
𝑥
= Vulnerable software versions