Описание
mad-proxy is a Python-based HTTP/HTTPS proxy server for detection and blocking of malicious web activity using custom security policies. Versions 0.3 and below allow attackers to bypass HTTP/HTTPS traffic interception rules, potentially exposing sensitive traffic. This issue does not have a fix at the time of publication.
EPSS
Процентиль: 21%
0.00069
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-693
Связанные уязвимости
CVSS3: 5.3
github
около 2 месяцев назад
HTTP/HTTPS Traffic Interception Bypass in mad-proxy
EPSS
Процентиль: 21%
0.00069
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-693