Vulnerabilities > CVE-2006-5596 - Unspecified vulnerability in AEP Networks Smartgate SSL Server 4.3B
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN aep-networks
exploit available
Summary
Directory traversal vulnerability in the SSL server in AEP Smartgate 4.3b allows remote attackers to download arbitrary files via ..\ (dot dot backslash) sequences in an HTTP GET request.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | AEP SmartGate 4.3b (GET) Arbitrary File Download Exploit. CVE-2006-5596,CVE-2006-5725. Remote exploit for windows platform |
file | exploits/windows/remote/2637.c |
id | EDB-ID:2637 |
last seen | 2016-01-31 |
modified | 2006-10-24 |
platform | windows |
port | 143 |
published | 2006-10-24 |
reporter | prdelka |
source | https://www.exploit-db.com/download/2637/ |
title | AEP SmartGate 4.3b GET Arbitrary File Download Exploit |
type | remote |
References
- http://secunia.com/advisories/22550
- http://secunia.com/advisories/22550
- http://www.securityfocus.com/bid/20722
- http://www.securityfocus.com/bid/20722
- http://www.vupen.com/english/advisories/2006/4224
- http://www.vupen.com/english/advisories/2006/4224
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29817
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29817
- https://prdelka.blackart.org.uk/exploitz/prdelka-vs-AEP-smartgate.c
- https://prdelka.blackart.org.uk/exploitz/prdelka-vs-AEP-smartgate.c
- https://www.exploit-db.com/exploits/2637
- https://www.exploit-db.com/exploits/2637