Vulnerabilities > CVE-2005-2729 - Unspecified vulnerability in Astaro Security Linux 6.001
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN astaro
exploit available
Summary
The HTTP proxy in Astaro Security Linux 6.0 does not properly filter HTTP CONNECT requests to localhost, which allows remote attackers to bypass firewall rules and connect to local services.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 1 |
Exploit-Db
description | Astaro Security Linux 6.0 01 HTTP CONNECT Unauthorized Access Weakness. CVE-2005-2729. Remote exploit for linux platform |
id | EDB-ID:26198 |
last seen | 2016-02-03 |
modified | 2005-08-25 |
published | 2005-08-25 |
reporter | Oliver Karow |
source | https://www.exploit-db.com/download/26198/ |
title | Astaro Security Linux 6.0 01 HTTP CONNECT Unauthorized Access Weakness |
References
- http://marc.info/?l=bugtraq&m=112501186602731&w=2
- http://marc.info/?l=bugtraq&m=112501186602731&w=2
- http://secunia.com/advisories/16578/
- http://secunia.com/advisories/16578/
- http://www.securityfocus.com/bid/14665
- http://www.securityfocus.com/bid/14665
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22021
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22021