Vulnerabilities > CVE-2005-2729 - Unspecified vulnerability in Astaro Security Linux 6.001

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
astaro
exploit available

Summary

The HTTP proxy in Astaro Security Linux 6.0 does not properly filter HTTP CONNECT requests to localhost, which allows remote attackers to bypass firewall rules and connect to local services.

Vulnerable Configurations

Part Description Count
OS
Astaro
1

Exploit-Db

descriptionAstaro Security Linux 6.0 01 HTTP CONNECT Unauthorized Access Weakness. CVE-2005-2729. Remote exploit for linux platform
idEDB-ID:26198
last seen2016-02-03
modified2005-08-25
published2005-08-25
reporterOliver Karow
sourcehttps://www.exploit-db.com/download/26198/
titleAstaro Security Linux 6.0 01 HTTP CONNECT Unauthorized Access Weakness