Smartgate SSL Server Directory Traversal Information Disclosure Vulnerability

The Smartgate SSL Server is prone to a remote information-disclosure vulnerability because the application fails to properly sanitize user-supplied input.

Exploiting this issue allows remote, unauthenticated attackers to retrieve the contents of arbitrary files from vulnerable computers with the privileges of the webserver process. Information harvested may aid in further attacks.


Privacy Statement
Copyright 2010, SecurityFocus