← Back

CVE-2016-9099

nvd nist
Published: May 11, 2017Modified: May 13, 2026

JSON object

Loading...
6.1
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

Symantec Advanced Secure Gateway (ASG) 6.6, ASG 6.7 prior to 6.7.2.1, ProxySG 6.5 prior to 6.5.10.6, ProxySG 6.6, and ProxySG 6.7 prior to 6.7.2.1 are susceptible to an open redirection vulnerability. A remote attacker can use a crafted management console URL in a phishing attack to redirect the target user to a malicious web site.

Affected (5)

2 products
Advanced Secure Gateway
Symantec Proxysg
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 6.7 to 6.7.2.1
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
From 6.5 to 6.5.10.6
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 6.6
Configuration D
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 6.6
Configuration E
1 vulnerable
Vulnerable SoftwareAffected Versions
From 6.7 to 6.7.2.1

References (6)

Source: secure@symantec.com
Third Party AdvisoryVDB Entry
Source: secure@symantec.com
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.