Blue Coat K9 Web Protection 4.0.230 Beta relies on client-side JavaScript as a protection mechanism, which allows remote attackers to bypass authentication and access the (1) summary, (2) detail, (3) overrides, and (4) pwemail pages by disabling JavaScript.
References
Configurations
History
21 Nov 2024, 00:51
Type | Values Removed | Values Added |
---|---|---|
References | () http://dicas3000.blogspot.com/2008/10/blue-coat-k9-web-protection-v40230-beta.html - | |
References | () http://seclists.org/fulldisclosure/2008/Oct/0070.html - | |
References | () http://www.securityfocus.com/bid/31584 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/45696 - |
Information
Published : 2008-10-09 18:00
Updated : 2024-11-21 00:51
NVD link : CVE-2008-4515
Mitre link : CVE-2008-4515
CVE.ORG link : CVE-2008-4515
JSON object : View
Products Affected
blue_coat_systems
- k9_web_protection
CWE
CWE-287
Improper Authentication