Vulnerabilities (CVE)

Filtered by vendor Liftoffsoftware Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-35736 1 Liftoffsoftware 1 Gateone 2026-06-17 5.0 MEDIUM 7.5 HIGH
GateOne 1.1 allows arbitrary file download without authentication via /downloads/.. directory traversal because os.path.join is misused.
CVE-2020-20184 1 Liftoffsoftware 1 Gateone 2026-06-17 7.5 HIGH 9.8 CRITICAL
GateOne allows remote attackers to execute arbitrary commands via shell metacharacters in the port field when attempting an SSH connection.
CVE-2020-19003 1 Liftoffsoftware 1 Gate One 2026-06-17 5.0 MEDIUM 5.3 MEDIUM
An issue in Gate One 1.2.0 allows attackers to bypass to the verification check done by the origins list and connect to Gate One instances used by hosts not on the origins list.