CVE-2015-6548

CWE-89SQL Injection3 documents3 sources
Severity
5.8MEDIUM
EPSS
0.6%
top 31.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 20
Latest updateMay 17

Description

Multiple SQL injection vulnerabilities in a PHP script in the management console on Symantec Web Gateway (SWG) appliances with software before 5.2.2 DB 5.0.0.1277 allow remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 6.4 | Impact: 6.4

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-7c9j-j32c-9gpp: Multiple SQL injection vulnerabilities in a PHP script in the management console on Symantec Web Gateway (SWG) appliances with software before 52022-05-17
CVEList
CVE-2015-6548: Multiple SQL injection vulnerabilities in a PHP script in the management console on Symantec Web Gateway (SWG) appliances with software before 52015-09-20
CVE-2015-6548 (MEDIUM CVSS 5.8) | Multiple SQL injection vulnerabilit | cvebase.io