CVE-2017-14706
Published Sep 22, 2017DenyAll WAF before 6.4.1 allows unauthenticated remote attackers to obtain authentication information by making a typeOf=debug request to /webservices/download/index.php, and then…
Vendor/product archive
2 CVEs tagged to denyall / i-suite — 1 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.
DenyAll WAF before 6.4.1 allows unauthenticated remote attackers to obtain authentication information by making a typeOf=debug request to /webservices/download/index.php, and then…
DenyAll WAF before 6.4.1 allows unauthenticated remote command execution via TCP port 3001 because shell metacharacters can be inserted into the type parameter to the tailDateFile…