This script is Copyright (C) 1999-2016 Tenable Network Security, Inc.
An HTTP proxy running on the remote host can be used to establish
The proxy allows users to perform CONNECT requests such as :
This request gives the person who made it the ability to have an
interactive session with a third-party site.
This issue may allow attackers to bypass your firewall by connecting
to sensitive ports such as 23 (telnet) via the proxy, or it may allow
internal users to bypass the firewall rules and connect to ports or
sites they should not be allowed to.
In addition, your proxy may be used to perform attacks against other
Reconfigure your proxy to refuse CONNECT requests.
Risk factor :
Nessus Plugin ID: 10192 ()
Upgrade to Nessus Professional today!
Start your free Nessus Cloud trial now!
Begin Free Trial
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.