CVE-2016-5313
8.8HIGH
Summary
Symantec Web Gateway (SWG) before 5.2.5 allows remote authenticated users to execute arbitrary OS commands.
Refferences
http://seclists.org/fulldisclosure/2016/Oct/24
mailing-listx_refsource_FULLDISC
http://packetstormsecurity.com/files/139006/Symantec-Web-...
x_refsource_MISC
http://www.securitytracker.com/id/1036973
vdb-entryx_refsource_SECTRACK
https://www.symantec.com/security_response/securityupdate...
x_refsource_CONFIRM
http://www.securityfocus.com/bid/93284
vdb-entryx_refsource_BID
EPSS Score
36% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Collectors
NVD DatabaseMitre Database