CGIProxy Detection

info Nessus Plugin ID 58832

Synopsis

The remote web server hosts a web-based proxy script.

Description

The remote web server hosts CGIProxy (nph-proxy.cgi), a web-based proxy script. This script allows remote users to retrieve any resource via HTTP, HTTPS, or FTP that is accessible from the server the script is running on.

Solution

Remove this software if its use does not match your organization's acceptable use and security policies.

See Also

https://www.jmarshall.com/tools/cgiproxy/

Plugin Details

Severity: Info

ID: 58832

File Name: nph_proxy_detect.nasl

Version: 1.6

Type: remote

Family: CGI abuses

Published: 4/23/2012

Updated: 6/1/2022

Configuration: Enable thorough checks

Asset Inventory: true

Supported Sensors: Nessus

Vulnerability Information

CPE: x-cpe:/a:jmarshall:cgiproxy

Excluded KB Items: Settings/disable_cgi_scanning