PoC Index

CVE-2005-0316

HIGH 7.5EPSS 8.1%

WebWasher Classic 2.2.1 and 3.3, when running in server mode, does not properly drop CONNECT requests to the localhost from external systems, which could allow remote attackers to bypass intended access restrictions.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
8.08% chance of exploitation in the next 30 days, 94th percentile
Published
2005-02-10
Updated
2024-08-07

Proof-of-concept exploits (1)

ExploitDB entries (1)

References

Related