2.6

CVE-2011-1499

acl.c in Tinyproxy before 1.8.3, when an Allow configuration setting specifies a CIDR block, permits TCP connections from all IP addresses, which makes it easier for remote attackers to hide the origin of web traffic by leveraging the open HTTP proxy server.

Data is provided by the National Vulnerability Database (NVD)
BanuTinyproxy Version <= 1.8.2
BanuTinyproxy Version1.5.0
BanuTinyproxy Version1.5.0 Updatepre1
BanuTinyproxy Version1.5.0 Updatepre2
BanuTinyproxy Version1.5.0 Updatepre3
BanuTinyproxy Version1.5.0 Updatepre4
BanuTinyproxy Version1.5.0 Updatepre5
BanuTinyproxy Version1.5.0 Updatepre6
BanuTinyproxy Version1.5.0 Updaterc1
BanuTinyproxy Version1.5.0 Updaterc10
BanuTinyproxy Version1.5.0 Updaterc2
BanuTinyproxy Version1.5.0 Updaterc4
BanuTinyproxy Version1.5.0 Updaterc5
BanuTinyproxy Version1.5.0 Updaterc6
BanuTinyproxy Version1.5.0 Updaterc7
BanuTinyproxy Version1.5.0 Updaterc8
BanuTinyproxy Version1.5.0 Updaterc9
BanuTinyproxy Version1.5.1
BanuTinyproxy Version1.5.1 Updatepre1
BanuTinyproxy Version1.5.1 Updatepre2
BanuTinyproxy Version1.5.1 Updatepre3
BanuTinyproxy Version1.5.1 Updatepre4
BanuTinyproxy Version1.5.1 Updatepre5
BanuTinyproxy Version1.5.1 Updatepre6
BanuTinyproxy Version1.5.1 Updaterc1
BanuTinyproxy Version1.5.1 Updaterc2
BanuTinyproxy Version1.5.1 Updaterc3
BanuTinyproxy Version1.5.1 Updaterc4
BanuTinyproxy Version1.5.2
BanuTinyproxy Version1.5.2 Updaterc1
BanuTinyproxy Version1.5.2 Updaterc2
BanuTinyproxy Version1.5.3
BanuTinyproxy Version1.5.3 Updaterc1
BanuTinyproxy Version1.6.0
BanuTinyproxy Version1.6.0 Updatea
BanuTinyproxy Version1.6.0 Updatepre1
BanuTinyproxy Version1.6.0 Updatepre2
BanuTinyproxy Version1.6.0 Updatepre3
BanuTinyproxy Version1.6.0 Updatepre4
BanuTinyproxy Version1.6.0 Updaterc1
BanuTinyproxy Version1.6.0 Updaterc2
BanuTinyproxy Version1.6.0 Updaterc3
BanuTinyproxy Version1.6.1
BanuTinyproxy Version1.6.2
BanuTinyproxy Version1.6.3
BanuTinyproxy Version1.6.4
BanuTinyproxy Version1.6.5
BanuTinyproxy Version1.7.0
BanuTinyproxy Version1.7.1
BanuTinyproxy Version1.8.0
BanuTinyproxy Version1.8.1
DebianDebian Linux Version6.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.78% 0.714
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 2.6 4.9 2.9
AV:N/AC:H/Au:N/C:N/I:P/A:N