CVE-2013-4673: Symantec Web Gateway
Medium severity, CVSS 5.8. EPSS: 1.3% chance of exploitation in the next 30 days.
The management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 does not properly implement RADIUS authentication, which allows remote attackers to execute arbitrary code by leveraging access to the login prompt.
Affected products
- Symantec Web Gateway: up to and including 5.1; version 5.0 only; version 5.0.1 only; version 5.0.2 only; version 5.0.3 only; version 5.0.3.18 only
- Symantec Web Gateway Appliance 8450
- Symantec Web Gateway Appliance 8490
Published 2013-08-01. Last modified 2026-06-16.