← Back

CVE-2016-9100

nvd nist
Published: May 11, 2017Modified: May 13, 2026

JSON object

Loading...
7.8
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

Symantec Advanced Secure Gateway (ASG) 6.6 prior to 6.6.5.13, ASG 6.7 prior to 6.7.3.1, ProxySG 6.5 prior to 6.5.10.6, ProxySG 6.6 prior to 6.6.5.13, and ProxySG 6.7 prior to 6.7.3.1 are susceptible to an information disclosure vulnerability. An attacker with local access to the client host of an authenticated administrator user can, under certain circumstances, obtain sensitive authentication credential information.

Affected (5)

2 products
Advanced Secure Gateway
Symantec Proxysg
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 6.6 to 6.6.5.13
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
From 6.7 to 6.7.3.1
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
From 6.5 to 6.5.10.6
Configuration D
1 vulnerable
Vulnerable SoftwareAffected Versions
From 6.6 to 6.6.5.13
Configuration E
1 vulnerable
Vulnerable SoftwareAffected Versions
From 6.7 to 6.7.3.1

Related CWEs

References (6)

Source: secure@symantec.com
Third Party AdvisoryVDB Entry
Source: secure@symantec.com
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.