CVE-2013-4670: Symantec Web Gateway
Medium severity, CVSS 4.3. EPSS: 4.9% chance of exploitation in the next 30 days.
Multiple cross-site scripting (XSS) vulnerabilities in the management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected products
- Symantec Web Gateway: up to and including 5.1; version 5.0 only; version 5.0.1 only; version 5.0.2 only; version 5.0.3 only; version 5.0.3.18 only
- Symantec Web Gateway Appliance 8450
- Symantec Web Gateway Appliance 8490
Published 2013-08-01. Last modified 2026-06-16.