SQL Injection Vulnerability in Symantec Web Gateway
CVE-2012-4178

Currently unrated

Key Information:

Vendor
Symantec
Vendor
CVE Published:
7 August 2012

Summary

A SQL injection vulnerability exists in the Symantec Web Gateway, specifically in the deptUploads_data.php file, which enables remote attackers to manipulate database queries through unsanitized input in the groupid parameter. This flaw could allow unauthorized individuals to execute arbitrary SQL commands, potentially compromising sensitive data integrity and security within the affected system.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.