7.5
CVSSv2

CVE-2006-5596

Published: 28/10/2006 Updated: 19/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in the SSL server in AEP Smartgate 4.3b allows remote malicious users to download arbitrary files via ..\ (dot dot backslash) sequences in an HTTP GET request.

Vulnerable Product Search on Vulmon Subscribe to Product

aep networks smartgate ssl server 4.3b

Exploits

/* prdelka-vs-AEP-smartgate * ======================== * Smartgate is an application layer security gateway that meets FIPS 140-2 * requirements for large-scale networked environments for IP-based Networks * AEP provide network solutions for government, law enforcement, homeland security, * public safety, criminal intelligence and much more ...