CVE-2020-35736
EUVD-2020-2339227.12.2020, 20:15
GateOne 1.1 allows arbitrary file download without authentication via /downloads/.. directory traversal because os.path.join is misused.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| liftoffsoftware | gateone | 1.1 |
𝑥
= Vulnerable software versions