Fortech Proxy+ 2.30 - Remote Administration

EDB-ID:

19942

CVE:



Author:

anonymous

Type:

remote


Platform:

Windows

Date:

1999-12-26


source: https://www.securityfocus.com/bid/1226/info

By default, Fortech Proxy+ can be remotely administered by any user possessing no authorization simply by connecting to http://target:4400/admin.

In addition, the telnet gateway is open by default which can accomodate for anonymous packet forwarding. 

To remotely administer Proxy+ (given that the default port has not been changed):
http://target:4400/admin