vendor:
Web Gateway
by:
S2 Crew [Hungary]
8,8
CVSS
HIGH
File Include and OS Command Execution
20
CWE
Product Name: Web Gateway
Affected Version From: 5.0.2.8
Affected Version To: 5.0.2.8
Patch Exists: YES
Related CWE: CVE-2012-0297, CVE-2012-0298
CPE: a:symantec:web_gateway:5.0.2.8
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2012
Symantec Web Gateway File Include and OS Command Execution Vulnerability
A vulnerability in Symantec Web Gateway 5.0.2.8 allows an attacker to include a remote file and execute OS commands. This is due to the application not properly validating user-supplied input. An attacker can leverage this vulnerability to gain access to sensitive information and execute arbitrary code on the server. The vulnerability is present in the previewProxyError.php and releasenotes.php scripts, which allow an attacker to include a remote file and execute OS commands. Additionally, the application allows an attacker to download and delete arbitrary files, as well as execute arbitrary code via the uploadFile.php and remoteRepairs.php scripts.
Mitigation:
The vendor has released a patch to address this vulnerability. Additionally, users should ensure that all user-supplied input is properly validated and that the application is running the latest version.