WinRoute Proxy Detection

info Nessus Network Monitor Plugin ID 1102

Synopsis

The remote proxy may pass local user credentials to a malicious external website.

Description

The remote client is utilizing a WinRoute Proxy. Some versions of this proxy have a bug wherein client Proxy authorization is forwarded to remote web servers. As a result, a malicious web server can retrieve the user's Proxy UserID and password. Versions of Winroute up to 5.1.4 are affected by this vulnerability.

Solution

Upgrade to 5.1.4 or later.

See Also

http://www.kerio.com

Plugin Details

Severity: Info

ID: 1102

Family: Web Clients

Published: 8/20/2004

Updated: 9/16/2018