Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Daniel Schrã¶Ter

#49678of 53,633
5Total CVSS
Vulnerabilities · 1
PT-2005-2940
5.0
2005-06-14
Finjan · Finjan Surfingate · CVE-2005-1994
**Name of the Vulnerable Software and Affected Versions** Finjan SurfinGate versions 7.0SP2 through 7.0SP3 **Description** The issue allows remote attackers to download blocked files by utilizing hex-encoded characters in a filename. This can be achieved by using characters such as `%2e`. **Recommendations** For Finjan SurfinGate versions 7.0SP2 through 7.0SP3, consider restricting access to file downloads until a patch is available. As a temporary workaround, avoid using hex-encoded characters in filenames to minimize the risk of exploitation.