CVE Vulnerabilities

CVE-2006-0522

Published: Feb 02, 2006 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in the Authentication Servlet in Symantec Sygate Management Server (SMS) version 4.1 build 1417 and earlier allows remote attackers to execute arbitrary SQL commands and bypass authentication via unknown attack vectors related to a URL.

Affected Software

Name Vendor Start Version End Version
Sygate_management_server Symantec * 4.1_mr_2_build_1417_english (including)
Sygate_management_server Symantec 3.5_mr_3_build_894_english (including) 3.5_mr_3_build_894_english (including)
Sygate_management_server Symantec 4.0_mr_1_build_1104_english (including) 4.0_mr_1_build_1104_english (including)
Sygate_management_server Symantec 4.1_ga_build_1258_japanese (including) 4.1_ga_build_1258_japanese (including)
Sygate_management_server Symantec 4.1_mr1_build_1351_chinese (including) 4.1_mr1_build_1351_chinese (including)

References