Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2018-18506
Description:When proxy auto-detection is enabled, if a web server serves a Proxy Auto-Configuration (PAC) file or if a PAC file is loaded locally, this PAC file can specify that requests to the localhost are to be sent through the proxy to another server. This behavior is disallowed by default when a proxy is manually configured, but when enabled could allow for attacks on services and tools that bind to the localhost for networked behavior if they are accessed through browsing. This vulnerability affects Firefox < 65.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2018-18506
BugTraq ID: 106773
http://www.securityfocus.com/bid/106773
Bugtraq: 20190320 [SECURITY] [DSA 4411-1] firefox-esr security update (Google Search)
https://seclists.org/bugtraq/2019/Mar/28
Bugtraq: 20190401 [SECURITY] [DSA 4420-1] thunderbird security update (Google Search)
https://seclists.org/bugtraq/2019/Apr/0
Debian Security Information: DSA-4411 (Google Search)
https://www.debian.org/security/2019/dsa-4411
Debian Security Information: DSA-4420 (Google Search)
https://www.debian.org/security/2019/dsa-4420
https://security.gentoo.org/glsa/201904-07
https://lists.debian.org/debian-lts-announce/2019/03/msg00024.html
https://lists.debian.org/debian-lts-announce/2019/04/msg00000.html
RedHat Security Advisories: RHSA-2019:0622
https://access.redhat.com/errata/RHSA-2019:0622
RedHat Security Advisories: RHSA-2019:0623
https://access.redhat.com/errata/RHSA-2019:0623
RedHat Security Advisories: RHSA-2019:0680
https://access.redhat.com/errata/RHSA-2019:0680
RedHat Security Advisories: RHSA-2019:0681
https://access.redhat.com/errata/RHSA-2019:0681
RedHat Security Advisories: RHSA-2019:0966
https://access.redhat.com/errata/RHSA-2019:0966
RedHat Security Advisories: RHSA-2019:1144
https://access.redhat.com/errata/RHSA-2019:1144
SuSE Security Announcement: openSUSE-SU-2019:1056 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-03/msg00035.html
SuSE Security Announcement: openSUSE-SU-2019:1077 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-03/msg00043.html
SuSE Security Announcement: openSUSE-SU-2019:1126 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00023.html
SuSE Security Announcement: openSUSE-SU-2019:1162 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00043.html
https://usn.ubuntu.com/3874-1/
https://usn.ubuntu.com/3927-1/




© 1998-2025 E-Soft Inc. All rights reserved.