SSL-Explorer: Community Edition - Security Vulnerabilities

Security Vulnerabilities

In June 2007, Secunia published an advisory stating that versions of SSL-Explorer prior to 0.2.13 are vulnerable to cross-site scripting attacks and HTTP header injection attacks. 3SP Ltd fixed this vulnerability in later versions of the product and advised users to upgrade their servers.

Currently there is a US-Cert advisory notice for an unresolved potential security flaw affecting a whole class of URL-rewriting Clientless SSL VPN products including all versions of SSL-Explorer and its derivatives, and many other similar utilities: see

Read more about this topic:  SSL-Explorer: Community Edition

Famous quotes containing the word security:

    Those words freedom and opportunity do not mean a license to climb upwards by pushing other people down. Any paternalistic system that tries to provide for security for everyone from above only calls for an impossible task and a regimentation utterly uncongenial to the spirit of our people.
    Franklin D. Roosevelt (1882–1945)