Vulnerabilities > Securecomputing > Securityreporter > 4.6.3

DATE CVE VULNERABILITY TITLE RISK
2007-07-27 CVE-2007-4043 Improper Authentication vulnerability in Securecomputing Securityreporter 4.2.30/4.6.3
file.cgi in Secure Computing SecurityReporter (aka Network Security Analyzer) before 4.6.3 allows remote attackers to bypass authentication via a name parameter ending with a "%00.gif" sequence.
network
low complexity
securecomputing CWE-287
5.0
2007-07-25 CVE-2007-3986 Directory Traversal Vulnerability And Authentication Bypass vulnerability in Securecomputing Securityreporter 4.6.3
file.cgi in Secure Computing SecurityReporter (aka Network Security Analyzer) 4.6.3 allows remote attackers to bypass authentication via a name parameter that specifies the eventcache directory and a non-GIF file, which causes the $dontvalidate variable to be set to true.
network
low complexity
securecomputing
5.0
2007-07-25 CVE-2007-3985 Directory Traversal Vulnerability And Authentication Bypass vulnerability in Securecomputing Securityreporter 4.6.3
Directory traversal vulnerability in file.cgi in Secure Computing SecurityReporter (aka Network Security Analyzer) 4.6.3 allows remote attackers to download arbitrary files via a ..
network
low complexity
securecomputing
5.0