Show filters
125 Total Results
Displaying 81-90 of 125
Sort by:
Attacker Value
Unknown
CVE-2018-6290
Disclosure Date: February 06, 2018 (last updated November 26, 2024)
Local Privilege Escalation in Kaspersky Secure Mail Gateway version 1.1.
0
Attacker Value
Unknown
CVE-2018-6289
Disclosure Date: February 06, 2018 (last updated November 26, 2024)
Configuration file injection leading to Code Execution as Root in Kaspersky Secure Mail Gateway version 1.1.
0
Attacker Value
Unknown
CVE-2018-6291
Disclosure Date: February 06, 2018 (last updated November 26, 2024)
WebConsole Cross-Site Scripting in Kaspersky Secure Mail Gateway version 1.1.
0
Attacker Value
Unknown
CVE-2018-6288
Disclosure Date: February 06, 2018 (last updated November 26, 2024)
Cross-site Request Forgery leading to Administrative account takeover in Kaspersky Secure Mail Gateway version 1.1.
0
Attacker Value
Unknown
CVE-2016-10257
Disclosure Date: January 10, 2018 (last updated November 26, 2024)
The Symantec Advanced Secure Gateway (ASG) 6.6, ASG 6.7 (prior to 6.7.2.1), ProxySG 6.5 (prior to 6.5.10.6), ProxySG 6.6, and ProxySG 6.7 (prior to 6.7.2.1) management console is susceptible to a reflected XSS vulnerability. A remote attacker can use a crafted management console URL in a phishing attack to inject arbitrary JavaScript code into the management console web client application. This is a separate vulnerability from CVE-2016-10256.
0
Attacker Value
Unknown
CVE-2017-18001
Disclosure Date: December 31, 2017 (last updated November 26, 2024)
Trustwave Secure Web Gateway (SWG) through 11.8.0.27 allows remote attackers to append an arbitrary public key to the device's SSH Authorized Keys data, and consequently obtain remote root access, via the publicKey parameter to the /sendKey URI.
0
Attacker Value
Unknown
CVE-2016-6594
Disclosure Date: June 08, 2017 (last updated November 26, 2024)
Blue Coat Advanced Secure Gateway 6.6, CacheFlow 3.4, ProxySG 6.5 and 6.6 allows remote attackers to bypass blocked requests, user authentication, and payload scanning.
0
Attacker Value
Unknown
CVE-2016-9097
Disclosure Date: May 11, 2017 (last updated November 26, 2024)
The Symantec Advanced Secure Gateway (ASG) 6.6 prior to 6.6.5.8, ProxySG 6.5 prior 6.5.10.6, ProxySG 6.6 prior to 6.6.5.8, and ProxySG 6.7 prior to 6.7.1.2 management consoles do not, under certain circumstances, correctly authorize administrator users. A malicious administrator with read-only access can exploit this vulnerability to access management console functionality that requires read-write access privileges.
0
Attacker Value
Unknown
CVE-2016-9099
Disclosure Date: May 11, 2017 (last updated November 26, 2024)
Symantec Advanced Secure Gateway (ASG) 6.6, ASG 6.7 prior to 6.7.2.1, ProxySG 6.5 prior to 6.5.10.6, ProxySG 6.6, and ProxySG 6.7 prior to 6.7.2.1 are susceptible to an open redirection vulnerability. A remote attacker can use a crafted management console URL in a phishing attack to redirect the target user to a malicious web site.
0
Attacker Value
Unknown
CVE-2016-9100
Disclosure Date: May 11, 2017 (last updated November 26, 2024)
Symantec Advanced Secure Gateway (ASG) 6.6 prior to 6.6.5.13, ASG 6.7 prior to 6.7.3.1, ProxySG 6.5 prior to 6.5.10.6, ProxySG 6.6 prior to 6.6.5.13, and ProxySG 6.7 prior to 6.7.3.1 are susceptible to an information disclosure vulnerability. An attacker with local access to the client host of an authenticated administrator user can, under certain circumstances, obtain sensitive authentication credential information.
0