The default configuration of the proxy for Cisco Cache Engine and Content Engine allows remote attackers to use HTTPS to make TCP connections to allowed IP addresses while hiding the actual source IP.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Content_distribution_manager_4630 | Cisco | * | * |
Content_distribution_manager_4630 | Cisco | 4.0 (including) | 4.0 (including) |
Content_distribution_manager_4630 | Cisco | 4.1 (including) | 4.1 (including) |
Content_distribution_manager_4650 | Cisco | * | * |
Content_distribution_manager_4650 | Cisco | 4.0 (including) | 4.0 (including) |
Content_distribution_manager_4650 | Cisco | 4.1 (including) | 4.1 (including) |
Content_engine | Cisco | 507 (including) | 507 (including) |
Content_engine | Cisco | 507_2.2.0 (including) | 507_2.2.0 (including) |
Content_engine | Cisco | 507_3.1 (including) | 507_3.1 (including) |
Content_engine | Cisco | 507_4.0 (including) | 507_4.0 (including) |
Content_engine | Cisco | 507_4.1 (including) | 507_4.1 (including) |
Content_engine | Cisco | 560 (including) | 560 (including) |
Content_engine | Cisco | 560_2.2.0 (including) | 560_2.2.0 (including) |
Content_engine | Cisco | 560_3.1 (including) | 560_3.1 (including) |
Content_engine | Cisco | 560_4.0 (including) | 560_4.0 (including) |
Content_engine | Cisco | 560_4.1 (including) | 560_4.1 (including) |
Content_engine | Cisco | 590 (including) | 590 (including) |
Content_engine | Cisco | 590_2.2.0 (including) | 590_2.2.0 (including) |
Content_engine | Cisco | 590_3.1 (including) | 590_3.1 (including) |
Content_engine | Cisco | 590_4.0 (including) | 590_4.0 (including) |
Content_engine | Cisco | 590_4.1 (including) | 590_4.1 (including) |
Content_engine | Cisco | 7320 (including) | 7320 (including) |
Content_engine | Cisco | 7320_2.2.0 (including) | 7320_2.2.0 (including) |
Content_engine | Cisco | 7320_3.1 (including) | 7320_3.1 (including) |
Content_engine | Cisco | 7320_4.0 (including) | 7320_4.0 (including) |
Content_engine | Cisco | 7320_4.1 (including) | 7320_4.1 (including) |
Enterprise_content_delivery_network_software | Cisco | 4.0 (including) | 4.0 (including) |
Enterprise_content_delivery_network_software | Cisco | 4.1 (including) | 4.1 (including) |
Cache_engine_505 | Cisco | 2.4.0 (including) | 2.4.0 (including) |
Cache_engine_505 | Cisco | 3.0 (including) | 3.0 (including) |
Cache_engine_550 | Cisco | * | * |
Cache_engine_550 | Cisco | 2.2.0 (including) | 2.2.0 (including) |
Cache_engine_550 | Cisco | 2.4.0 (including) | 2.4.0 (including) |
Cache_engine_550 | Cisco | 3.0 (including) | 3.0 (including) |
Cache_engine_570 | Cisco | 2.2.0 (including) | 2.2.0 (including) |
Cache_engine_570 | Cisco | 2.4.0 (including) | 2.4.0 (including) |
Cache_engine_570 | Cisco | 3.0 (including) | 3.0 (including) |
Cache_engine_570 | Cisco | 570 (including) | 570 (including) |
Content_router_4430 | Cisco | * | * |