Vulnerabilities > CVE-2005-1857 - Unspecified vulnerability in Simpleproxy
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN simpleproxy
nessus
Summary
Format string vulnerability in simpleproxy before 3.4 allows remote malicious HTTP proxies to execute arbitrary code via format string specifiers in a reply.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
Nessus
NASL family | Debian Local Security Checks |
NASL id | DEBIAN_DSA-786.NASL |
description | Ulf Harnhammar from the Debian Security Audit Project discovered a format string vulnerability in simpleproxy, a simple TCP proxy, that can be exploited via replies from remote HTTP proxies. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 19529 |
published | 2005-08-30 |
reporter | This script is Copyright (C) 2005-2019 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/19529 |
title | Debian DSA-786-1 : simpleproxy - format string vulnerability |
code |
|
References
- http://secunia.com/advisories/16567/
- http://secunia.com/advisories/16567/
- http://sourceforge.net/project/shownotes.php?group_id=604&release_id=351847
- http://sourceforge.net/project/shownotes.php?group_id=604&release_id=351847
- http://www.debian.org/security/2005/dsa-786
- http://www.debian.org/security/2005/dsa-786
- http://www.kb.cert.org/vuls/id/139421
- http://www.kb.cert.org/vuls/id/139421
- http://www.securityfocus.com/bid/14666
- http://www.securityfocus.com/bid/14666
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22016
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22016