RSS   Vulnerabilities for 'Smartgate ssl server'   RSS

2006-11-03
 
CVE-2006-5725

 

 
The SSL server in AEP Smartgate 4.3b allows remote attackers to determine existence of directories via a direct request for a directory URI, which returns different HTTP status codes for existing and non-existing directories.

 
2006-10-27
 
CVE-2006-5596

 

 
Directory traversal vulnerability in the SSL server in AEP Smartgate 4.3b allows remote attackers to download arbitrary files via ..\ (dot dot backslash) sequences in an HTTP GET request.

 


Copyright 2021, cxsecurity.com

 

Back to Top