CVSS 9.8 · CRITICAL
CVE-2013-5017
SNMPConfig.php in the management console in Symantec Web Gateway (SWG) before 5.2.1 allows remote attackers to execute arbitrary commands via unspecified vectors.
View on NVDSeverity
Score: 9.8(CRITICAL)
Vector:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HAV: NETWORK
AC: LOW
PR: NONE
UI: NONE
S: UNCHANGED
C: HIGH
I: HIGH
A: HIGH
Weakness (CWE):
NVD-CWE-noinfoEPSS
Probability of exploitation (next 30 days): 0.2387 (23.9%)
Percentile: 96.1%
EPSS: 2026-05-06
Affects
symantec:web_gatewayTechnical description
SNMPConfig.php in the management console in Symantec Web Gateway (SWG) before 5.2.1 allows remote attackers to execute arbitrary commands via unspecified vectors.
Published: 6/18/2014, 7:55:04 PM
Last modified: 5/6/2026, 10:30:45 PM
References
- http://www.securityfocus.com/bid/67752
- http://www.securitytracker.com/id/1030443
- http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=securit%20y_advisory&pvid=security_advisory&year=&suid=20140616_00
- http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2014&suid=20140616_00
- http://www.securityfocus.com/bid/67752
- http://www.securitytracker.com/id/1030443
- http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=securit%20y_advisory&pvid=security_advisory&year=&suid=20140616_00
- http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2014&suid=20140616_00