Security Advisory

CVE-2020-35736

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-12-27 19:07:12
Last updated 2024-08-04 17:09:15
Assigner mitre
State PUBLISHED

Description

GateOne 1.1 allows arbitrary file download without authentication via /downloads/.. directory traversal because os.path.join is misused.