Whole Network Most Recent TOP10 AJAX E-Commerce Programming Security

 

HTTP Request Smuggling Tackled By Sun

Filed in archive Security by gautam on December 11, 2006

HTTP Request Smuggling.jpg
A latest advisory from Sun states that there is a bug in a number of its server products making them the target of HTTP Request Smuggling attacks. This has increased the chances of web cache poisoning coupled with firewall deception and prevention systems intrusionlinks. Also there is a chance of hijacking of HTTP sessions and cross site scripting attacks.

All this happens in case Sun Java System Proxy Server is used along with Java System Application Server or the Sun Java System Web Server. This problem was brought to notice by Watchfire last year and it's still not clear why it took so long for Sun to take a note of this problem. In order to tackle this problem, Sun has released the latest updates in Sun Java System Application Server, Sun Java System Web Server, Sun Java System Web Proxy Server and Sun ONE Application Server. Click here for the updates.


Advertisement


Permalink: HTTP Request Smuggling Tackled By Sun
Tags: HTTP  Request  Smuggling  sun  sun  microsystems  java  vulnerability  ajax  request+smuggling 

Trackback: http://www.creative-weblogging.com/cgi-bin/mt-tb.pl/45363



Advertisement


Advertisement


CW ToolbarInstall
RSSrss   | See all blog subscribe options
Googlegoogle   |   What is RSS?
Yahoo!yahoo
AddthisAddThis Feed Button
BloglinesBloglines
Newsletter
Advertisement - Book yours here.

Use our search feature to look for other interesting posts

Just this blog Whole network
Advertisement -
Book yours here..


 
Advertisement
Book yours here.



  • Testimonials

  • 'Great looking blog. Good quality posts with useful information.'
  • Other blogs in the same channel in the Creative Weblogging Network

Advertisement -
Book yours here..






Advertisement - Book yours here..
 
Tagcloud: AJAX Application Development Awards Basics Business conference E-Commerce Management Mobile Devices mobile phones Monthly Contest Personal Programming Security Service Oriented Architectures Sponsored Posts updates Web Services