SQL Injection Vulnerability in Symantec Web Gateway
CVE-2012-4178
Currently unrated
Summary
A SQL injection vulnerability exists in the Symantec Web Gateway, specifically in the deptUploads_data.php file, which enables remote attackers to manipulate database queries through unsanitized input in the groupid parameter. This flaw could allow unauthorized individuals to execute arbitrary SQL commands, potentially compromising sensitive data integrity and security within the affected system.
References
Timeline
Vulnerability published
Vulnerability Reserved