CVE-2015-6547: Command Injection
Published Sep 20, 2015
·Updated
The management console on Symantec Web Gateway (SWG) appliances with software before 5.2.2 DB 5.0.0.1277 allows remote authenticated users to execute arbitrary commands at boot time via unspecified vectors.
Affected Software
1 affected component
Symantec Web Gateway<=5.2.2
Event History
Sep 20, 2015
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6547?
CVE-2015-6547 is considered a critical vulnerability due to its potential for remote execution of arbitrary commands.
2
How do I fix CVE-2015-6547?
To address CVE-2015-6547, upgrade your Symantec Web Gateway to version 5.2.2 or later.
3
Who is affected by CVE-2015-6547?
CVE-2015-6547 affects Symantec Web Gateway appliances running software versions before 5.2.2.
4
What kind of attacks does CVE-2015-6547 allow?
CVE-2015-6547 allows remote authenticated users to execute arbitrary commands at boot time.
5
What are the vectors for CVE-2015-6547 exploitation?
The exploitation vectors for CVE-2015-6547 are unspecified, making it crucial to implement the recommended software updates.