CVE-2006-5596

Directory traversal vulnerability in the SSL server in AEP Smartgate 4.3b allows remote attackers to download arbitrary files via ..\ (dot dot backslash) sequences in an HTTP GET request.
Configurations

Configuration 1 (hide)

cpe:2.3:a:aep_networks:smartgate_ssl_server:4.3b:*:*:*:*:*:*:*

History

21 Nov 2024, 00:19

Type Values Removed Values Added
References () http://secunia.com/advisories/22550 - Vendor Advisory () http://secunia.com/advisories/22550 - Vendor Advisory
References () http://www.securityfocus.com/bid/20722 - Exploit () http://www.securityfocus.com/bid/20722 - Exploit
References () http://www.vupen.com/english/advisories/2006/4224 - () http://www.vupen.com/english/advisories/2006/4224 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/29817 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/29817 -
References () https://prdelka.blackart.org.uk/exploitz/prdelka-vs-AEP-smartgate.c - Exploit () https://prdelka.blackart.org.uk/exploitz/prdelka-vs-AEP-smartgate.c - Exploit
References () https://www.exploit-db.com/exploits/2637 - () https://www.exploit-db.com/exploits/2637 -

Information

Published : 2006-10-28 00:07

Updated : 2024-11-21 00:19


NVD link : CVE-2006-5596

Mitre link : CVE-2006-5596

CVE.ORG link : CVE-2006-5596


JSON object : View

Products Affected

aep_networks

  • smartgate_ssl_server