Vulnerabilities
Vulnerable Software
Qbik:  >> Wingate  >> 6.2.1  Security Vulnerabilities
Qbik WinGate, when transparent interception mode is enabled, uses the HTTP Host header to determine the remote endpoint, which allows remote attackers to bypass access controls for Flash, Java, Silverlight, and probably other technologies, and possibly communicate with restricted intranet sites, via a crafted web page that causes a client to send HTTP requests with a modified Host header.
CVSS Score
5.4
EPSS Score
0.002
Published
2009-03-04
Heap-based buffer overflow in the IMAP service in Qbik WinGate 6.2.2.1137 and earlier allows remote authenticated users to cause a denial of service (resource exhaustion) or possibly execute arbitrary code via a long argument to the LIST command. NOTE: some of these details are obtained from third party information.
CVSS Score
6.5
EPSS Score
0.171
Published
2008-08-12


Contact Us

Shodan ® - All rights reserved