Vulnerabilities > Gateway

DATE CVE VULNERABILITY TITLE RISK
2008-01-10 CVE-2008-0221 Path Traversal vulnerability in Gateway Weblaunch 1.0.0.1
Directory traversal vulnerability in the WebLaunch.WeblaunchCtl.1 (aka CWebLaunchCtl) ActiveX control in weblaunch.ocx 1.0.0.1 in Gateway Weblaunch allows remote attackers to execute arbitrary programs via a ..\ (dot dot backslash) in the second argument to the DoWebLaunch method.
network
gateway CWE-22
critical
9.3
2008-01-10 CVE-2008-0220 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Gateway Cweblaunchctl Activex Control and Weblaunch
Multiple stack-based buffer overflows in the WebLaunch.WeblaunchCtl.1 (aka CWebLaunchCtl) ActiveX control in weblaunch.ocx 1.0.0.1 in Gateway Weblaunch allow remote attackers to execute arbitrary code via a long string in the (1) second or (2) fourth argument to the DoWebLaunch method.
network
low complexity
gateway CWE-119
7.5
2003-04-11 CVE-2002-1440 Unspecified vulnerability in Gateway Gs-400
The Gateway GS-400 server has a default root password of "0001n" that can not be changed via the administrative interface, which can allow attackers to gain root privileges.
network
low complexity
gateway
critical
10.0