CVE-2015-5692: High severity symantec web gateway appliance vulnerability
adminmessages.php in the management console on Symantec Web Gateway (SWG) appliances with software before 5.2.2 DB 5.0.0.1277 allows remote authenticated users to execute arbitrary code by uploading a file with a safe extension and content type, and then leveraging an improper Sudo configuration to make this a setuid-root file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-5692?
CVE-2015-5692 has a high severity rating due to the risk of remote code execution.
How do I fix CVE-2015-5692?
To fix CVE-2015-5692, update the Symantec Web Gateway software to version 5.2.2 or later.
Who is affected by CVE-2015-5692?
CVE-2015-5692 affects users of Symantec Web Gateway appliances running software versions prior to 5.2.2 DB 5.0.0.1277.
What type of attack does CVE-2015-5692 allow?
CVE-2015-5692 allows remote authenticated users to execute arbitrary code on the affected appliances.
Is CVE-2015-5692 an insider threat vulnerability?
Yes, CVE-2015-5692 requires authenticated access, making it primarily a concern for insider threats.