CVE-2017-13677: Broadcom Advanced Secure Gateway

High severity, CVSS 7.5. EPSS: 5% chance of exploitation in the next 30 days.

Denial-of-service (DoS) vulnerability in the Symantec Advanced Secure Gateway (ASG) and ProxySG management consoles. A remote attacker can use crafted HTTP/HTTPS requests to cause denial-of-service through management console application crashes.

Affected products

  • Broadcom Advanced Secure Gateway: from 6.6, before 6.6.5.14 (fixed in 6.6.5.14); from 6.7, before 6.7.3.1 (fixed in 6.7.3.1)
  • Broadcom Symantec Proxysg: from 6.5, before 6.5.10.8 (fixed in 6.5.10.8); from 6.6, before 6.6.5.14 (fixed in 6.6.5.14); from 6.7, before 6.7.3.1 (fixed in 6.7.3.1)

Published 2018-04-11. Last modified 2026-06-17.