HIGH · 9.3

CVE-2010-5189

Blue Coat ProxySG before SGOS 4.3.4.1, 5.x before SGOS 5.4.5.1, 5.5 before SGOS 5.5.4.1, and 6.x before SGOS 6.1.1.1 allows remote authenticated users to execute arbitrary CLI commands by leveraging r...

Vulnerability Description

Blue Coat ProxySG before SGOS 4.3.4.1, 5.x before SGOS 5.4.5.1, 5.5 before SGOS 5.5.4.1, and 6.x before SGOS 6.1.1.1 allows remote authenticated users to execute arbitrary CLI commands by leveraging read-only administrator privileges and establishing an HTTPS session.

CVSS Score

9.3

HIGH

AV:N/AC:M/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
BluecoatSgos<= 4.3.4
BluecoatProxysgAll versions
BluecoatProxysg Sg210-10-
BluecoatProxysg Sg210-25-
BluecoatProxysg Sg210-5-
BluecoatProxysg Sg510-10-
BluecoatProxysg Sg510-20-
BluecoatProxysg Sg510-25-
BluecoatProxysg Sg510-5-
BluecoatProxysg Sg810-10-
BluecoatProxysg Sg810-20-
BluecoatProxysg Sg810-25-
BluecoatProxysg Sg810-5-
BluecoatProxysg Sg9000-10-
BluecoatProxysg Sg9000-20-
BluecoatProxysg Sg9000-5-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2010-5189?

CVE-2010-5189 is a vulnerability with a CVSS score of 9.3 (HIGH). Blue Coat ProxySG before SGOS 4.3.4.1, 5.x before SGOS 5.4.5.1, 5.5 before SGOS 5.5.4.1, and 6.x before SGOS 6.1.1.1 allows remote authenticated users to execute arbitrary CLI commands by leveraging r...

How severe is CVE-2010-5189?

CVE-2010-5189 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2010-5189?

Check the references section above for vendor advisories and patch information. Affected products include: Bluecoat Sgos, Bluecoat Proxysg, Bluecoat Proxysg Sg210-10, Bluecoat Proxysg Sg210-25, Bluecoat Proxysg Sg210-5.