peter bassill · operator
$ cve CVE-2005-2729 JSON

CVE-2005-2729 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 6.6% (pctl 94)

Patch early

A public exploit exists.

Description

The HTTP proxy in Astaro Security Linux 6.0 does not properly filter HTTP CONNECT requests to localhost, which allows remote attackers to bypass firewall rules and connect to local services.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS6.56% — more likely to be exploited than 94% of all CVEs
On CISA KEVno
Public exploityes
Published2005-08-30
Last modified2026-06-16

Affected (1)

VendorProduct
astarosecurity linux

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD