2 results (0.001 seconds)

CVSS: 9.3EPSS: 0%CPEs: 4EXPL: 0

26 Aug 2012 — Multiple cross-site request forgery (CSRF) vulnerabilities on the Blue Coat ProxyAV appliance before 3.2.6.1 allow remote attackers to hijack the authentication of administrators for requests that (1) change a password, (2) modify a policy, or (3) restart the device. Múltiples vulnerabilidades de solicitudes falsificadas en sitios cruzados (CSRF) en Blue Coat ProxyAV appliance anterior a v3.2.6.1 permite a atacantes remotos secuestrar la autenticación de los administradores para solicitudes de (1) cambio de... • https://kb.bluecoat.com/index?page=content&id=SA46 • CWE-352: Cross-Site Request Forgery (CSRF) •

CVSS: 9.8EPSS: 77%CPEs: 20EXPL: 3

31 Dec 2005 — Buffer overflow in BlueCoat (a) WinProxy before 6.1a and (b) the web console access functionality in ProxyAV before 2.4.2.3 allows remote attackers to execute arbitrary code via a long Host: header. • https://www.exploit-db.com/exploits/1408 •