Vulnerabilities (CVE)

Filtered by vendor Phion Subscribe
Filtered by product Airlock Web Application Firewall
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-2300 1 Phion 1 Airlock Web Application Firewall 2023-12-10 10.0 HIGH N/A
The management interface in the phion airlock Web Application Firewall (WAF) 4.1-10.41 does not properly handle CGI requests that specify large width and height parameters for an image, which allows remote attackers to execute arbitrary commands or cause a denial of service (resource consumption) via a crafted request.