VYPR
Vendor

Liftoffsoftware

Products
2
CVEs
3
Across products
3
Status
Private

Products

2

Recent CVEs

3
  • CVE-2020-20184CriDec 14, 2020
    risk 0.64cvss 9.8epss 0.03

    GateOne allows remote attackers to execute arbitrary commands via shell metacharacters in the port field when attempting an SSH connection.

  • CVE-2020-35736HigDec 27, 2020
    risk 0.50cvss 7.5epss 0.15

    GateOne 1.1 allows arbitrary file download without authentication via /downloads/.. directory traversal because os.path.join is misused.

  • CVE-2020-19003MedOct 6, 2021
    risk 0.35cvss 5.3epss 0.01

    An issue in Gate One 1.2.0 allows attackers to bypass to the verification check done by the origins list and connect to Gate One instances used by hosts not on the origins list.