A vulnerability has been reported for AdSubtract Proxy. The problem occurs due to the application failing to handle specially crafted hostnames when carrying out reverse DNS lookups. By constructing a malicious hostname entry on a attacker-controlled DNS server, it may be possible for an attacker to bypass the access control list enforced by AdSubtract. Successful exploitation of this vulnerability could allow an unauthorized remote user to anonymously proxy connections through the affected software.
A vulnerability has been reported for AdSubtract Proxy. The problem occurs due to the application failing to handle specially crafted hostnames when carrying out reverse DNS lookups. By constructing a malicious hostname entry on a attacker-controlled DNS server, it may be possible for an attacker to bypass the access control list enforced by AdSubtract. Successful exploitation of this vulnerability could allow an unauthorized remote user to anonymously proxy connections through the affected software.