Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
McAfee Web Gateway 7.0 allows remote attackers to bypass the access configuration for the CONNECT method by providing an arbitrary allowed hostname in the Host HTTP header. NOTE: this issue might not be reproducible, because the researcher did not provide configuration details for the vulnerable system, and the observed behavior might be consistent with a configuration that was (perhaps inadvertently) designed to allow access based on Host HTTP headers
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
McAfee Web Gateway安全漏洞
Vulnerability Description
McAfee Web Gateway 7.0版本中存在漏洞。远程攻击者可通过在Host HTTP头中提供一个任意允许的主机名,绕过CONNECT方法的访问配置。
CVSS Information
N/A
Vulnerability Type
N/A