漏洞信息详情
Qbik WinGate信息披露漏洞
漏洞简介
WinGate 5.2.3 build 901和6.0beta 2 build 942及如:5.0.5的其他版本存在漏洞。远程攻击者借助wingate-内部目录的URL请求读取根目录的任意文件。
漏洞公告
The vendor has released an upgrade dealing with this issue. Qbik WinGate Plus 5.0.5
- Qbik WinGate6.0.0.963-USE.EXE http://www334.pair.com/qbiknz/downloads/WinGate6.0.0.963-USE.EXE
- Qbik WinGate6.0.0.963-USE.EXE http://www334.pair.com/qbiknz/downloads/WinGate6.0.0.963-USE.EXE
- Qbik WinGate6.0.0.963-USE.EXE http://www334.pair.com/qbiknz/downloads/WinGate6.0.0.963-USE.EXE
- Qbik WinGate6.0.0.963-USE.EXE http://www334.pair.com/qbiknz/downloads/WinGate6.0.0.963-USE.EXE
- Qbik WinGate6.0.0.963-USE.EXE http://www334.pair.com/qbiknz/downloads/WinGate6.0.0.963-USE.EXE
- Qbik WinGate6.0.0.963-USE.EXE http://www334.pair.com/qbiknz/downloads/WinGate6.0.0.963-USE.EXE
参考网址
来源: XF 名称: wingate-directory-traversal(16589) 链接:http://xforce.iss.net/xforce/xfdb/16589 来源: FULLDISC 名称: 20040701 iDEFENSE Security Advisory 07.01.04: WinGate Information Disclosure 链接:http://marc.theaimsgroup.com/?l=full-disclosure&m=108872788123695&w=2 来源: www.idefense.com 链接:http://www.idefense.com/application/poi/display?id=113
受影响实体
- Qbik Wingate:5.2.3<!--2000-1-1-->
- Qbik Wingate:6.0_beta_2<!--2000-1-1-->
- Qbik Wingate:5.0.5<!--2000-1-1-->
补丁
暂无
还没有评论,来说两句吧...