S4E just found a high top 10 tcp port service scan
medium·Product Based Web Vulnerabilities·Updated Feb 12, 2026

CVE-2025-4078 Scanner

CVE-2025-4078 Scanner - Path Traversal vulnerability in Wangshen SecGate 3600

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, subdomain, ipv4
CostFree
0
Times Used
by S4E users
0
Assets Scanned
domains & IPs
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2025-4078
5.3
CVSSmedium
Exploitable remotely over the internet · low-privilege account sufficient.

A vulnerability, which was classified as problematic, has been found in Wangshen SecGate 3600 2400. This issue affects some unknown processing of the file ?g=log_export_file. The manipulation of the argument file_name leads to path traversal. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

Attack Vector
Network
Privileges Req.
Low
User Interaction
None
Affected
SecGate 3600by Wangshen
2400
Updated Aug 5, 2026View on NVD →
Detail

The Wangshen SecGate 3600 is widely used by enterprises and government organizations to secure network traffic and protect against cyber threats. It functions as a firewall and security appliance, providing enterprise-grade security features. Network administrators rely on the SecGate 3600 for robust network protection and integrity. However, vulnerabilities in such devices can lead to substantial risks if not addressed promptly. Vendors and cybersecurity professionals consistently work towards maintaining its firmware to mitigate potential security flaws. Therefore, firms commonly update these devices' firmware to ensure resilient protection against emerging threats.

Path Traversal vulnerabilities allow attackers to access files and directories that are stored outside the web root folder. Essentially, malicious actors can manipulate variables referencing files with dot-dot-slash (../) sequences to move through directories in the file system. This vulnerability typically arises when user input is unsanitized or improperly validated. Attackers can leverage this vulnerability to gain unauthorized access to system files, which can lead to information disclosure or further system compromise. Such vulnerabilities are critical for systems that handle sensitive data, necessitating stringent input validation techniques. It's crucial for administrators to perform regular checks and updates to minimize exposure to path traversal vulnerabilities.

The specific path traversal vulnerability in Wangshen SecGate 3600 is exploited by manipulating the 'file_name' argument in the query '?g=log_export_file'. The vulnerability manifests when inputs are inadequately sanitized, allowing directory traversal sequences to access protected files. By incorporating sequences such as '../../../../../../', attackers can potentially access critical system files (e.g., /etc/passwd), gaining insight into system configurations or sensitive information. The system responds with a status code of 200 if file retrieval is successful, confirming the presence of such vulnerability. Implementing strict validation of user inputs is crucial to prevent this vector of attack and protect sensitive data from unauthorized access.

Successful exploitation of the vulnerability could allow attackers to read sensitive files, leading to potential information disclosure. This could escalate to full system compromise if the exposed files contain credentials or configuration data. Attackers may also use the disclosed information to plan further attacks, potentially disrupting service availability or causing reputational damage. Additionally, unauthorized access to configuration files can provide attackers leverage to manipulate the system settings. It is crucial for firms to immediately address this vulnerability to prevent aggressive exploitation and maintain system integrity.

REFERENCES

Solution Advice
  • Implement input validation to ensure the 'file_name' parameter does not contain directory traversal sequences.
  • Sanitize all user inputs to eliminate potential risks of path traversal attacks.
  • Update to the latest Wangshen SecGate 3600 firmware to ensure any known vulnerabilities are patched.
  • Regularly monitor system logs for any signs of unauthorized file access or suspicious activity.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.