← Back

CVE-2014-7285

nvd nist
Published: Dec 17, 2014Modified: May 6, 2026

JSON object

Loading...
6.5
Vector
AV:N/AC:L/Au:S/C:P/I:P/A:P
Exploitability: 8.0 / Impact: 6.4
Source: NVD

Description

The management console on the Symantec Web Gateway (SWG) appliance before 5.2.2 allows remote authenticated users to execute arbitrary OS commands by injecting command strings into unspecified PHP scripts.

Affected (1)

1 product
Web Gateway
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 5.2.1

Timeline

No history available yet.