LiftoffsoftwareCVEs & Vulnerabilities
3 CVEs affecting Liftoffsoftware products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
3 CVEs→ All vendors
Most Affected Products
gateone 2gate one 1
CVE-2020-19003MEDIUM
An issue in Gate One 1.2.0 allows attackers to bypass to the verification check done by the origins list and connect to Gate One instances used by hosts not on the origins list.
6 Oct 2021
5.3
CVSS
CVE-2020-35736HIGH
GateOne 1.1 allows arbitrary file download without authentication via /downloads/.. directory traversal because os.path.join is misused.
27 Dec 2020
7.5
CVSS
CVE-2020-20184CRITICAL
GateOne allows remote attackers to execute arbitrary commands via shell metacharacters in the port field when attempting an SSH connection.
14 Dec 2020
9.8
CVSS
← PrevPage 1 / 1Next →