Security flaw in popular proxy service leaves 50,000 hosts vulnerable


Source: techradar.com techradar.com

Key Topics in this News Article:

News Snapshot:

More than half of Tinyproxy service hosts are running a flawed version which hackers could use in remote code execution attacks, a new report from researchers from Cisco Talos has claimed. Tinyproxy is a lightweight HTTP/HTTPS proxy server commonly used to improve internet access speed by caching frequently accessed web pages, filtering out unwanted content, and providing anonymity. The tool is often used in home networks, small businesses, or on personal servers. Thousands of vulnerable endpoints In its findings, Cisco Talos said Tinyproxy version 1.10.0 and 1.11.1 were vulnerable to CVE-2023-49606, a use-after-free bug with a severity score of 9.8....