CVE Vulnerabilities

CVE-2013-4672

Published: Aug 01, 2013 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:A/AC:L/Au:M/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io minimus.io echohq.com

The management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 has an incorrect sudoers file, which allows local users to bypass intended access restrictions via a command.

Affected Software

Name Vendor Start Version End Version
Web_gateway Symantec * 5.1 (including)
Web_gateway Symantec 5.0 (including) 5.0 (including)
Web_gateway Symantec 5.0.1 (including) 5.0.1 (including)
Web_gateway Symantec 5.0.2 (including) 5.0.2 (including)
Web_gateway Symantec 5.0.3 (including) 5.0.3 (including)
Web_gateway Symantec 5.0.3.18 (including) 5.0.3.18 (including)

References