CVE-2016-9099
6.1
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD
Description
Symantec Advanced Secure Gateway (ASG) 6.6, ASG 6.7 prior to 6.7.2.1, ProxySG 6.5 prior to 6.5.10.6, ProxySG 6.6, and ProxySG 6.7 prior to 6.7.2.1 are susceptible to an open redirection vulnerability. A remote attacker can use a crafted management console URL in a phishing attack to redirect the target user to a malicious web site.
Affected (5)
Products: Broadcom: Advanced Secure Gateway, Symantec Proxysg
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 6.7 to 6.7.2.1 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| From 6.5 to 6.5.10.6 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 6.6 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 6.6 |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| From 6.7 to 6.7.2.1 |
References (6)
Source: secure@symantec.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.