← Back

CVE-2010-0115

nvd nist
Published: Jan 14, 2011Modified: Apr 29, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

SQL injection vulnerability in login.php in the GUI management console in Symantec Web Gateway 4.5 before 4.5.0.376 allows remote attackers to execute arbitrary SQL commands via the USERNAME parameter.

Affected (4)

1 product
Web Gateway
Configuration A
4 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Symantec
Version 4.5.0.325
Version 4.5.0.326
Version 4.5.0.327
Version 4.5
Running on/withPlatform Versions
Symantec
Web Gateway Appliance
All versions

References (16)

Timeline

No history available yet.