Gateway's vulnerability footprint centers on its WebLaunch web and application platform, including related components such as the WebLaunchCtl ActiveX control and the GS-400 appliance, with the durable signal concentrated in path-traversal and memory-boundary violations. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Gateway over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-0220HIGH Multiple stack-based buffer overflows in the WebLaunch.WeblaunchCtl.1 (aka CWebLaunchCtl) ActiveX control in weblaunch.ocx 1.0.0.1 in Gateway Weblaunch allow remote attackers to ex | Jan 10, 2008 | 7.5 | 37 | NO | YES |
CVE-2008-0221HIGH Directory traversal vulnerability in the WebLaunch.WeblaunchCtl.1 (aka CWebLaunchCtl) ActiveX control in weblaunch.ocx 1.0.0.1 in Gateway Weblaunch allows remote attackers to execu | Jan 10, 2008 | 9.3 | 35 | NO | YES |
CVE-2002-1440HIGH The Gateway GS-400 server has a default root password of "0001n" that can not be changed via the administrative interface, which can allow attackers to gain root privileges. | Apr 11, 2003 | 10.0 | 25 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Gateway.
Media articles that mention a CVE ID that affects a product developed by Gateway — matched by CVE ID, not by vendor name.