First published: Wed Jun 18 2014(Updated: )
SQL injection vulnerability in clientreport.php in the management console in Symantec Web Gateway (SWG) before 5.2 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Credit: secure@symantec.com
Affected Software | Affected Version | How to fix |
---|---|---|
Symantec Web Gateway | <=5.1.1 | |
Symantec Web Gateway | =5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-1651 is considered to have a high severity due to its ability to allow remote attackers to execute arbitrary SQL commands.
To fix CVE-2014-1651, upgrade Symantec Web Gateway to version 5.2 or later.
The risks associated with CVE-2014-1651 include potential data breaches and unauthorized access to sensitive database information.
CVE-2014-1651 affects all versions of Symantec Web Gateway prior to version 5.2.
CVE-2014-1651 is categorized as an SQL injection vulnerability.