FreeBSD Security Advisory 2001.61...

- AV AC AU C I A
发布: 2001-10-11
修订: 2025-04-13

FreeBSD Security Advisory FreeBSD-SA-01:61 - If the squid proxy port is configured in acceleration-only mode, ACL's are ignored, allowing a remote attacker to use the squid server in order to issue requests to hosts that are otherwise inaccessible. Because the squid server processes these requests as HTTP requests, the attacker cannot send or retrieve arbitrary data. However, the attacker could use squid's response to determine if a particular port is open on a victim host. Therefore, the squid server may be used to conduct a port scan.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息