The management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 has an incorrect sudoers file, which allows local users to bypass intended access restrictions via a command.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2013-08-01 06:32
Updated : 2014-01-16 21:17
NVD link : CVE-2013-4672
Mitre link : CVE-2013-4672
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
symantec
- web_gateway_appliance_8490
- web_gateway
- web_gateway_appliance_8450