CVE-2013-4671: Symantec Web Gateway
Medium severity, CVSS 6.0. EPSS: 2.7% chance of exploitation in the next 30 days.
Cross-site request forgery (CSRF) vulnerability in the management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors.
Affected products
- Symantec Web Gateway: up to and including 5.1; version 5.0 only; version 5.0.1 only; version 5.0.2 only; version 5.0.3 only; version 5.0.3.18 only
- Symantec Web Gateway Appliance 8450
- Symantec Web Gateway Appliance 8490
Published 2013-08-01. Last modified 2026-06-16.