Information Disclosure Vulnerability in Apache HttpClient 4.x
Apache HttpClient is a HTTP/1.1 compliant HTTP agent based on the Apache HttpComponents HttpCore.
Affected Application: Apache HttpClient 4.x.
Issue: On 07/07/2011, an information disclosure vulnerability was reported for Apache HttpClient. In configurations using an authenticating proxy server, attackers can obtain the Proxy-Authorization header, which could contain sensitive information about the server.
Resolution: Update to the most recent version of HttpClient (4.1.1). For more information, see http://hc.apache.org/
We compiled this information using the National Vulnerability Database. For more information about this issue, see the summary for CVE-2011-1498.
Website Protection Site Scanner scans for this vulnerability, and many more. To learn about Site Scanner, see Getting Started with Website Protection Site Scanner.