Multiple cross-site scripting (XSS) vulnerabilities in PHP scripts in the management console on Symantec Web Gateway (SWG) appliances with software before 5.2.2 DB 5.0.0.1277 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, as demonstrated an attack against admin_messages.php.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: symantec
Published:
Updated: 2024-08-06T06:59:04.089Z
Reserved: 2015-07-28T00:00:00
Link: CVE-2015-5691

No data.

Status : Deferred
Published: 2015-09-20T20:59:06.243
Modified: 2025-04-12T10:46:40.837
Link: CVE-2015-5691

No data.