CVE-2012-2976 - Acquired Drydocks
Description
The management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows remote attackers to execute arbitrary shell commands via crafted input to application scripts related to an \injection\ issue.
Reference
http://www.securityfocus.com/bid/54427 http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2012&suid=20120720_00 http://www.kb.cert.org/vuls/id/108471