First published: Fri Dec 31 2004(Updated: )
MyProxy 6.58 allows remote authenticated users in the Users Tab to connect to arbitrary hosts from the MyProxy server, possibly bypassing access restrictions, by connecting to the proxy and issuing a CONNECT command.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NCSA MyProxy | =6.58 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-2481 is considered a medium severity vulnerability due to its potential to allow unauthorized access to arbitrary hosts.
To fix CVE-2004-2481, upgrade MyProxy to a version that resolves this vulnerability or apply any available patches.
CVE-2004-2481 affects MyProxy version 6.58 and allows authenticated users to exploit the vulnerability.
CVE-2004-2481 can be exploited by authenticated users utilizing the proxy to issue CONNECT commands to arbitrary hosts.
Exploitation of CVE-2004-2481 can lead to bypassing access restrictions and unauthorized access to network resources.