CVE-2016-9100

Symantec Advanced Secure Gateway (ASG) 6.6 prior to 6.6.5.13, ASG 6.7 prior to 6.7.3.1, ProxySG 6.5 prior to 6.5.10.6, ProxySG 6.6 prior to 6.6.5.13, and ProxySG 6.7 prior to 6.7.3.1 are susceptible to an information disclosure vulnerability. An attacker with local access to the client host of an authenticated administrator user can, under certain circumstances, obtain sensitive authentication credential information.
Configurations

Configuration 1 (hide)

cpe:2.3:a:broadcom:advanced_secure_gateway:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:broadcom:advanced_secure_gateway:*:*:*:*:*:*:*:*

Configuration 3 (hide)

cpe:2.3:a:broadcom:symantec_proxysg:*:*:*:*:*:*:*:*

Configuration 4 (hide)

cpe:2.3:a:broadcom:symantec_proxysg:*:*:*:*:*:*:*:*

Configuration 5 (hide)

cpe:2.3:a:broadcom:symantec_proxysg:*:*:*:*:*:*:*:*

History

21 Nov 2024, 03:00

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/102454 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/102454 - Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id/1040138 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1040138 - Third Party Advisory, VDB Entry
References () https://www.symantec.com/security-center/network-protection-security-advisories/SA155 - Vendor Advisory () https://www.symantec.com/security-center/network-protection-security-advisories/SA155 - Vendor Advisory

Information

Published : 2017-05-11 14:30

Updated : 2024-11-21 03:00


NVD link : CVE-2016-9100

Mitre link : CVE-2016-9100

CVE.ORG link : CVE-2016-9100


JSON object : View

Products Affected

broadcom

  • symantec_proxysg
  • advanced_secure_gateway
CWE
CWE-255

Credentials Management Errors