Open Proxy to Other Web Ports on Proxy's localhost Interface Misconfiguration Scanner
The host is configured as a proxy which allows access to web ports on the host's internal interface.
Short Info
Level
High
Single Scan
Single Scan
Can be used by
Asset Owner
Estimated Time
4 minutes
Time Interval
1 month 1 day
Scan only one
Domain, IPv4
Toolbox
-
If a proxy allows a connection to the proxy's localhost interface (either via localhost or 127.0.0.1) it may be possible to access restricted content or services. When combined with an ability to access any port (common with a proxy which allows access to *), this can be easily used as a simple port scanner against the proxy as well.