CVE

CVE-2020-35736

CVE-2020-35736

GateOne 1.1 allows arbitrary file download without authentication via /downloads/.. directory traversal because os.path.join is misused.

Source: CVE-2020-35736

Exit mobile version