HTTP proxy detected

Risk Level: Low risk vulnerability  Low

Check or Attack Name: httpproxy

Platforms: Any
Description:

A web (HTTP) proxy has been identified. Some older proxy servers may have vulnerabilities that let an attacker execute commands remotely. If the web proxy can be penetrated, it could lead to unauthorized access to the network.

Remedy:

Disable the service or review your proxy rules. See your firewall's documentation for more information.

Unix: Do not run your web server as a proxy. Refer to your web server's documentation, and disable the proxy, if possible.

Windows: From the Services control panel, disable the HTTP service:

  1. Open the Services control panel. From the Windows NT Start menu, select Settings, Control Panel, Services.
  2. Select the service.
  3. Click Stop.
  4. When the service has stopped, click Startup.
  5. Choose one of these options:
    • To permanently disable the service, click Disabled.
    • To turn the service off unless manually activated by the user or a program, click Manual.
  6. Click OK, then click Close.
References:

X-Force Logo
Know Your Risks