| VID |
22077 |
| Severity |
30 |
| Port |
8080, ... |
| Protocol |
TCP |
| Class |
Webproxy |
| Detailed Description |
The proxy, allows everyone to perform requests against arbitrary ports, like GET http://target.com:110
This problem may allow attackers to go through your firewall, by connecting to sensitive ports like 110 (pop3) using your proxy. In addition to that, your proxy may be used to perform attacks against other networks.
* References: http://cgi.nessus.org/plugins/dump.php3?id=10193 |
| Recommendation |
Reconfigure your proxy so that it only accepts connections against non-dangerous ports (> 1024). |
| Related URL |
(CVE) |
| Related URL |
(SecurityFocus) |
| Related URL |
(ISS) |
|