Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2012-3505

Disclosure Date: October 09, 2012 (last updated November 08, 2023)
Tinyproxy 1.8.3 and earlier allows remote attackers to cause a denial of service (CPU and memory consumption) via (1) a large number of headers or (2) a large number of forged headers that trigger hash collisions predictably. bucket.
0
Attacker Value
Unknown

CVE-2011-1843

Disclosure Date: May 03, 2011 (last updated October 04, 2023)
Integer overflow in conf.c in Tinyproxy before 1.8.3 might allow remote attackers to bypass intended access restrictions in opportunistic circumstances via a TCP connection, related to improper handling of invalid port numbers.
0
Attacker Value
Unknown

CVE-2011-1499

Disclosure Date: April 29, 2011 (last updated October 04, 2023)
acl.c in Tinyproxy before 1.8.3, when an Allow configuration setting specifies a CIDR block, permits TCP connections from all IP addresses, which makes it easier for remote attackers to hide the origin of web traffic by leveraging the open HTTP proxy server.
0