CVE-2016-9100 in Symantec and Broadcom Products
Published on May 11, 2017
Symantec Advanced Secure Gateway (ASG) 6.6 prior to 6.6.5.13, ASG 6.7 prior to 6.7.3.1, ProxySG 6.5 prior to 6.5.10.6, ProxySG 6.6 prior to 6.6.5.13, and ProxySG 6.7 prior to 6.7.3.1 are susceptible to an information disclosure vulnerability. An attacker with local access to the client host of an authenticated administrator user can, under certain circumstances, obtain sensitive authentication credential information.
Products Associated with CVE-2016-9100
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2016-9100 are published in these products:
Affected Versions
Symantec Corporation ASG:- Version 6.6 prior to 6.6.5.13 is affected.
- Version 6.7 prior to 6.7.3.1 is affected.
- Version 6.5 prior to 6.5.10.6 is affected.
- Version 6.6 prior to 6.6.5.13 is affected.
- Version 6.7 prior to 6.7.3.1 is affected.
Exploit Probability
EPSS
0.17%
Percentile
37.97%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.