SOCKS Scan contents.gifindex.gif

SOCKS Scan

The SOCKS library of proxy rules can allow packets through (checked or unchecked) that should not be allowed through. This is not necessarily a vulnerability with the SOCKS program itself, but the vulnerability check can take advantage of a configuration error in the SOCKS proxy. This can also bypass the logging that a proxy server can do, and bypass any services that should normally be relayed instead of just passed through. The scanner attempts to connect to the following services through the SOCKS proxy.

ISS_NT00000000.gif FTP

ISS_NT00000000.gif Telnet

ISS_NT00000000.gif Sendmail

Risk: Medium

Fix: Verify and/or reconfigure the proxy rules.