7.5
CVE-2006-5596
- EPSS 2.96%
- Veröffentlicht 28.10.2006 00:07:00
- Zuletzt bearbeitet 16.06.2026 22:31:30
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Directory traversal vulnerability in the SSL server in AEP Smartgate 4.3b allows remote attackers to download arbitrary files via ..\ (dot dot backslash) sequences in an HTTP GET request.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Aep Networks ≫ Smartgate Ssl Server Version4.3b
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.96% | 0.854 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/22550
http://www.securityfocus.com/bid/20722
http://www.vupen.com/english/advisories/2006/4224
https://exchange.xforce.ibmcloud.com/vulnerabilities/29817
https://prdelka.blackart.org.uk/exploitz/prdelka-vs-AEP-smartgate.c
https://www.exploit-db.com/exploits/2637