Secunia Logo
 
CVE Reference: CVE-2005-2830
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-2830

Description:
Microsoft Internet Explorer 5.01, 5.5, and 6, when using an HTTPS proxy server that requires Basic Authentication, sends URLs in cleartext, which allows remote attackers to obtain sensitive information, aka "HTTPS Proxy Vulnerability."

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/23451

ST
  1015350

SAID
  Secunia Advisory: SA15368
  Secunia Advisory: SA18064
  Secunia Advisory: SA18311

OVAL
  http://oval.mitre.org/oval/definitions/data/oval1521.html
  http://oval.mitre.org/oval/definitions/data/oval1435.html
  http://oval.mitre.org/oval/definitions/data/oval1317.html
  http://oval.mitre.org/oval/definitions/data/oval1101.html
  http://oval.mitre.org/oval/definitions/data/oval1097.html
  http://oval.mitre.org/oval/definitions/data/oval1143.html

MS
  http://www.microsoft.com/technet/security/bulletin/ms05-054.mspx

MISC
  http://www130.nortelnetworks.com/cgi-bin/eserv/cs/main.jsp?cscat=BLTNDETAIL&DocumentOID=375420

CONFIRM
  http://support.avaya.com/elmodocs2/security/ASA-2005-234.pdf

BID
  15825


Return to the previous page.