Total vulnerabilities in the database
Directory traversal vulnerability in the logfile service of Wingate 4.1 Beta A and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack via an HTTP GET request that uses encoded characters in the URL.
Software | From | Fixed in |
---|---|---|
qbik / wingate | 2.1 | 2.1.x |
qbik / wingate | 4.0.1 | 4.0.1.x |
qbik / wingate | 3.0 | 3.0.x |
qbik / wingate | 4.1_beta_a | 4.1_beta_a.x |