HTTP proxy penetrated

Risk Level: High risk vulnerability  High

Check or Attack Name: wwwproxypen

Platforms: Any
Description:

The web (HTTP) proxy allowed access through the proxy server. If the test was conducted from outside the firewall, an attacker could use the proxy to access any portion of the network inside the firewall.

False Positives: If the test was conducted from inside the firewall, no risk is indicated.

Remedy:

Review the proxy server's settings. Refer to your firewall's documentation for more information.

References:

X-Force Logo
Know Your Risks