Vulnerabilities > Watchfire

DATE CVE VULNERABILITY TITLE RISK
2008-04-30 CVE-2008-2015 Path Traversal vulnerability in Watchfire Appscan 7.0
Multiple absolute path traversal vulnerabilities in certain ActiveX controls in WatchFire AppScan 7.0 allow remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the (1) CompactSave and (2) SaveSession method in one control, and the (3) saveRecordedExploreToFile method in a different control.
network
watchfire CWE-22
critical
9.3
2005-12-15 CVE-2005-4270 Remote Buffer Overflow vulnerability in Watchfire Appscan QA 5.0.134/5.0.609
Buffer overflow in Watchfire AppScan QA 5.0.609 and 5.0.134 allows remote web servers to execute arbitrary code via an HTTP 401 response with a WWW-Authenticate header containing a long Realm field.
network
low complexity
watchfire
7.5