Skip to main content

HTTP CONNECT and 407 Proxy "FalseCONNECT" Vulnerability

Last Update Date: 16 Aug 2016 09:34 Release Date: 16 Aug 2016 3099 Views

RISK: Medium Risk

TYPE: Clients - Browsers

TYPE: Browsers

A Vulnerability was identified in HTTP CONNECT and 407 Proxy, a attacker could exploit this vulnerability to perform MITM attacks on the targeted system.


Impact

  • Spoofing
  • Data Manipulation

System / Technologies affected

  • WebKit-based client,  please refer to the "Vendor Information" session of  this URL:
  • http://www.kb.cert.org/vuls/id/905344

 


Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

 

  • Please check with your software vendors and apply an patch. Please apply workarounds if you can't patch, for detail, please refer to http://www.kb.cert.org/vuls/id/905344

 


Vulnerability Identifier

  • No CVE information is available

Source


Related Link