peter bassill · operator
$ cve CVE-2013-5017 JSON

CVE-2013-5017

9.8
CRITICAL · CVSS 3.0 · EPSS 7% (pctl 94)

In your normal cycle

Critical by CVSS (9.8), but no sign of active exploitation.

Description

SNMPConfig.php in the management console in Symantec Web Gateway (SWG) before 5.2.1 allows remote attackers to execute arbitrary commands via unspecified vectors.

Scoring

CVSS9.8 (CRITICAL, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS6.96% — more likely to be exploited than 94% of all CVEs
On CISA KEVno
Public exploitnone known
Published2014-06-18
Last modified2026-06-16

Affected (1)

VendorProduct
symantecweb gateway

References

→ the Explorer  ·  watch your stack  ·  NVD