Trend Micro Information for VU#150227
HTTP proxy default configurations allow arbitrary TCP connections
- Vendor Information Help Date Notified: 19 Apr 2002
- Statement Date:
- Date Updated: 10 Feb 2003
No statement is currently available from the vendor regarding this vulnerability.
The vendor has not provided us with any further information regarding this vulnerability.
The CERT/CC tested InterScan VirusWall 3.52 on Windows 2000 and found it to be vulnerable. InterScan VirusWall can be used with a separate HTTP proxy service that may be able to block connections that use the HTTP CONNECT method. Web VirusWall for Windows NT requires a separate HTTP proxy service.
This issue has been addressed in InterScan VirusWall for UNIX:
If you have feedback, comments, or additional information about this vulnerability, please send us email.