Security readout for executives and security teams
Blue Coat ProxySG could temporarily keep trusting credentials after an account is deleted or changed. A user who previously had valid credentials may bypass intended access restrictions during that window. This matters most for offboarding, privileged role changes, and environments relying on ProxySG to enforce web access policy. Exposure is limited to organizations running affected Blue Coat ProxySG SGOS versions with caching enabled and access decisions tied to user account status. The attacker must have had valid credentials before deletion or modification. Treat as a targeted access-control risk, not an internet-wide emergency. Prioritize remediation where ProxySG protects sensitive browsing, partner access, or offboarding workflows. Mitigation focus: Inventory ProxySG appliances and record SGOS versions.; Check Blue Coat SA77 for the supported fixed release or workaround.; Upgrade affected SGOS versions according to vendor guidance..
Generated from the cited source records. This long-tail analysis has not been individually reviewed by a named human.
Conservative CVE-to-ATT&CK context
These mappings and lookup hints may be relevant to the vulnerability behavior, CWE, affected product, or exposure path. Glexia-inferred context is not an official MITRE, ATT&CK, CWE, or CVE Program mapping.
ATT&CK lookup starting points
Use these exact CWE pages and searches to review the Glexia ATT&CK library from this CVE's weakness and description context.
CVE-2014-2033 mapping review
Open the CVE-to-ATT&CK bridge for reviewed, inferred, or future official mappings tied to this CVE.
Open ATT&CK lookup- Severity
- Unknown
- CVSS
- Not scored
- Known Exploited
- No
- Published
CNA and ADP enrichment extracted from CVE v5
These fields come from the CVE record and ADP containers, not from Glexia's Take. They preserve time-varying source decisions such as CISA SSVC, KEV status, CVSS metrics, and provider references.
CVSS and timeline data
No CVSS vectors or timeline events were available in the normalized CVE source material.
Source materials
- CVE List V5 sourceCVE List V5
- https://kb.bluecoat.com/index?page=content&id=SA77CVE reference · x_refsource_CONFIRM
Products and packages named in the record
CWE details
CWE links open Glexia weakness intelligence pages with official CWE context, developer remediation guidance, and related CVE mappings.
