CVE-2021-30648
30.06.2021, 11:15
The Symantec Advanced Secure Gateway (ASG) and ProxySG web management consoles are susceptible to an authentication bypass vulnerability. An unauthenticated attacker can execute arbitrary CLI commands, view/modify the appliance configuration and policy, and shutdown/restart the appliance.Enginsight
Vendor | Product | Version |
---|---|---|
broadcom | symantec_proxysg | 6.5 ≤ 𝑥 < 6.5.10.16 |
broadcom | symantec_proxysg | 6.6 ≤ 𝑥 < 6.6.5.19 |
broadcom | symantec_proxysg | 6.7 ≤ 𝑥 < 6.7.5.12 |
broadcom | symantec_proxysg | 7.2 ≤ 𝑥 < 7.2.7.2 |
broadcom | symantec_proxysg | 7.3 ≤ 𝑥 < 7.3.3.3 |
broadcom | symantec_advanced_secure_gateway_s200-30_firmware | 6.6 ≤ 𝑥 < 6.7.4.17 |
broadcom | symantec_advanced_secure_gateway_s200-30_firmware | 6.7.5.0 ≤ 𝑥 < 6.7.5.12 |
broadcom | symantec_advanced_secure_gateway_s200-30_firmware | 7.2 ≤ 𝑥 < 7.2.7.2 |
broadcom | symantec_advanced_secure_gateway_s200-30_firmware | 7.3 ≤ 𝑥 < 7.3.3.3 |
broadcom | symantec_advanced_secure_gateway_s200-40_firmware | 6.6 ≤ 𝑥 < 6.7.4.17 |
broadcom | symantec_advanced_secure_gateway_s200-40_firmware | 6.7.5.0 ≤ 𝑥 < 6.7.5.12 |
broadcom | symantec_advanced_secure_gateway_s200-40_firmware | 7.2 ≤ 𝑥 < 7.2.7.2 |
broadcom | symantec_advanced_secure_gateway_s200-40_firmware | 7.3 ≤ 𝑥 < 7.3.3.3 |
broadcom | symantec_advanced_secure_gateway_s400-20_firmware | 6.6 ≤ 𝑥 < 6.7.4.17 |
broadcom | symantec_advanced_secure_gateway_s400-20_firmware | 6.7.5.0 ≤ 𝑥 < 6.7.5.12 |
broadcom | symantec_advanced_secure_gateway_s400-20_firmware | 7.2 ≤ 𝑥 < 7.2.7.2 |
broadcom | symantec_advanced_secure_gateway_s400-20_firmware | 7.3 ≤ 𝑥 < 7.3.3.3 |
broadcom | symantec_advanced_secure_gateway_s400-30_firmware | 6.6 ≤ 𝑥 < 6.7.4.17 |
broadcom | symantec_advanced_secure_gateway_s400-30_firmware | 6.7.5.0 ≤ 𝑥 < 6.7.5.12 |
broadcom | symantec_advanced_secure_gateway_s400-30_firmware | 7.2 ≤ 𝑥 < 7.2.7.2 |
broadcom | symantec_advanced_secure_gateway_s400-30_firmware | 7.3 ≤ 𝑥 < 7.3.3.3 |
broadcom | symantec_advanced_secure_gateway_s400-40_firmware | 6.6 ≤ 𝑥 < 6.7.4.17 |
broadcom | symantec_advanced_secure_gateway_s400-40_firmware | 6.7.5.0 ≤ 𝑥 < 6.7.5.12 |
broadcom | symantec_advanced_secure_gateway_s400-40_firmware | 7.2 ≤ 𝑥 < 7.2.7.2 |
broadcom | symantec_advanced_secure_gateway_s400-40_firmware | 7.3 ≤ 𝑥 < 7.3.3.3 |
broadcom | symantec_advanced_secure_gateway_500-10_firmware | 6.6 ≤ 𝑥 < 6.7.4.17 |
broadcom | symantec_advanced_secure_gateway_500-10_firmware | 6.7.5.0 ≤ 𝑥 < 6.7.5.12 |
broadcom | symantec_advanced_secure_gateway_500-10_firmware | 7.2 ≤ 𝑥 < 7.2.7.2 |
broadcom | symantec_advanced_secure_gateway_500-10_firmware | 7.3 ≤ 𝑥 < 7.3.3.3 |
broadcom | symantec_advanced_secure_gateway_s500-20_firmware | 6.6 ≤ 𝑥 < 6.7.4.17 |
broadcom | symantec_advanced_secure_gateway_s500-20_firmware | 6.7.5.0 ≤ 𝑥 < 6.7.5.12 |
broadcom | symantec_advanced_secure_gateway_s500-20_firmware | 7.2 ≤ 𝑥 < 7.2.7.2 |
broadcom | symantec_advanced_secure_gateway_s500-20_firmware | 7.3 ≤ 𝑥 < 7.3.3.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration