ZeroHour

CVE-2020-29026

CVSS 3.1
6.5 medium
EPSS
1%p72
Published
()
Modified
Description

A directory traversal vulnerability exists in the file upload function of the GateManager that allows an authenticated attacker with administrative permissions to read and write arbitrary files in the Linux file system. This issue affects: GateManager all versions prior to 9.2c.

Vendors
secomea
Products
gatemanager 8250 firmware, gatemanager 4250 firmware, gatemanager 4260 firmware, gatemanager 9250 firmware
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.