Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.103547
Category:Web application abuses
Title:Symantec Web Gateway Password Change Security Bypass Vulnerability
Summary:Symantec Web Gateway is prone to a security bypass vulnerability.
Description:Summary:
Symantec Web Gateway is prone to a security bypass vulnerability.

Vulnerability Impact:
Successful exploits may allow attackers to change another user's
password allowing them to gain unauthorized access in the context of
the affected user. This may aid in further attacks.

Affected Software/OS:
Symantec Web Gateway versions 5.0.x.x are vulnerable.

Solution:
Vendor updates are available. Please see the references for more
information.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:P/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2012-2977
BugTraq ID: 54430
http://www.securityfocus.com/bid/54430
CERT/CC vulnerability note: VU#108471
http://www.kb.cert.org/vuls/id/108471
CopyrightCopyright (C) 2012 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.