CVE-2011-1498

Source
https://cve.org/CVERecord?id=CVE-2011-1498
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2011-1498.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2011-1498
Aliases
Downstream
CGA (6)
DEBIAN (1)
Published
2011-07-07T21:55:01Z
Modified
2026-04-10T03:41:44Z
Summary
[none]
Details

Apache HttpClient 4.x before 4.1.1 in Apache HttpComponents, when used with an authenticating proxy server, sends the Proxy-Authorization header to the origin server, which allows remote web servers to obtain sensitive information by logging this header.

References

Affected packages