Security Advisory

CVE-2012-2632

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-06-15 19:00:00
Last updated 2024-09-16 17:34:25
Assigner jpcert
CVSS score not scored
State PUBLISHED

Description

SEIL routers with firmware SEIL/x86 1.00 through 2.35, SEIL/X1 2.30 through 3.75, SEIL/X2 2.30 through 3.75, and SEIL/B1 2.30 through 3.75, when the http-proxy and application-gateway features are enabled, do not properly handle the CONNECT command, which allows remote attackers to bypass intended URL restrictions via a TCP session.