{"api_version":"1","generated_at":"2026-07-23T09:28:03+00:00","cve":"CVE-2015-4334","urls":{"html":"https://cve.report/CVE-2015-4334","api":"https://cve.report/api/cve/CVE-2015-4334.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2015-4334","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2015-4334"},"summary":{"title":"CVE-2015-4334","description":"The default configuration of SGOS in Blue Coat ProxySG before 6.2.16.5, 6.5 before 6.5.7.1, and 6.6 before 6.6.2.1 forwards authentication challenges from upstream origin content servers (OCS) when used in an explicit proxy deployment, which makes it easier for remote attackers to obtain sensitive information via a 407 (aka Proxy Authentication Required) HTTP status code, as demonstrated when using NTLM authentication.","state":"PUBLISHED","assigner":"mitre","published_at":"2015-12-07 20:59:05","updated_at":"2026-05-06 22:30:45"},"problem_types":["CWE-200","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"5","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"}}],"references":[{"url":"http://www.securitytracker.com/id/1032149","name":"http://www.securitytracker.com/id/1032149","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"Blue Coat ProxySG Discloses NTLM Hashes to Remote Users - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://twitter.com/bugch3ck/status/591492380294979585","name":"https://twitter.com/bugch3ck/status/591492380294979585","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Jonas Vestberg na Twitterze: \"Updated security advisory from @BlueCoat https://t.co/TIS4O4UEt6 (and new title). They got a few things wrong:\"","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bto.bluecoat.com/security-advisory/sa93","name":"https://bto.bluecoat.com/security-advisory/sa93","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Broadcom Support Portal","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2015-4334","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2015-4334","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2015","cve_id":"4334","vulnerable":"1","versionEndIncluding":"6.2.16.4","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"symantec","cpe5":"proxysg_firmware","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2015","cve_id":"4334","vulnerable":"1","versionEndIncluding":"6.5.7.0","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"symantec","cpe5":"proxysg_firmware","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2015","cve_id":"4334","vulnerable":"1","versionEndIncluding":"6.6.2.0","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"symantec","cpe5":"proxysg_firmware","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T06:11:12.842Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"1032149","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id/1032149"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://twitter.com/bugch3ck/status/591492380294979585"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bto.bluecoat.com/security-advisory/sa93"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2015-04-14T00:00:00.000Z","descriptions":[{"lang":"en","value":"The default configuration of SGOS in Blue Coat ProxySG before 6.2.16.5, 6.5 before 6.5.7.1, and 6.6 before 6.6.2.1 forwards authentication challenges from upstream origin content servers (OCS) when used in an explicit proxy deployment, which makes it easier for remote attackers to obtain sensitive information via a 407 (aka Proxy Authentication Required) HTTP status code, as demonstrated when using NTLM authentication."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2015-12-07T20:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"1032149","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id/1032149"},{"tags":["x_refsource_MISC"],"url":"https://twitter.com/bugch3ck/status/591492380294979585"},{"tags":["x_refsource_CONFIRM"],"url":"https://bto.bluecoat.com/security-advisory/sa93"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2015-4334","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The default configuration of SGOS in Blue Coat ProxySG before 6.2.16.5, 6.5 before 6.5.7.1, and 6.6 before 6.6.2.1 forwards authentication challenges from upstream origin content servers (OCS) when used in an explicit proxy deployment, which makes it easier for remote attackers to obtain sensitive information via a 407 (aka Proxy Authentication Required) HTTP status code, as demonstrated when using NTLM authentication."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"1032149","refsource":"SECTRACK","url":"http://www.securitytracker.com/id/1032149"},{"name":"https://twitter.com/bugch3ck/status/591492380294979585","refsource":"MISC","url":"https://twitter.com/bugch3ck/status/591492380294979585"},{"name":"https://bto.bluecoat.com/security-advisory/sa93","refsource":"CONFIRM","url":"https://bto.bluecoat.com/security-advisory/sa93"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2015-4334","datePublished":"2015-12-07T20:00:00.000Z","dateReserved":"2015-06-04T00:00:00.000Z","dateUpdated":"2024-08-06T06:11:12.842Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2015-12-07 20:59:05","lastModifiedDate":"2026-05-06 22:30:45","problem_types":["CWE-200","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:symantec:proxysg_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"6.2","versionEndIncluding":"6.2.16.4","matchCriteriaId":"6D3DA59E-A652-4004-90FE-CD5399BDCB3E"},{"vulnerable":true,"criteria":"cpe:2.3:o:symantec:proxysg_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"6.5","versionEndIncluding":"6.5.7.0","matchCriteriaId":"E843F4BA-412B-488E-B339-56C7C62CD311"},{"vulnerable":true,"criteria":"cpe:2.3:o:symantec:proxysg_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"6.6","versionEndIncluding":"6.6.2.0","matchCriteriaId":"76F2C2E8-7811-457E-AFD8-B3504F97CD10"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2015","CveId":"4334","Ordinal":"1","Title":"CVE-2015-4334","CVE":"CVE-2015-4334","Year":"2015"},"notes":[{"CveYear":"2015","CveId":"4334","Ordinal":"1","NoteData":"The default configuration of SGOS in Blue Coat ProxySG before 6.2.16.5, 6.5 before 6.5.7.1, and 6.6 before 6.6.2.1 forwards authentication challenges from upstream origin content servers (OCS) when used in an explicit proxy deployment, which makes it easier for remote attackers to obtain sensitive information via a 407 (aka Proxy Authentication Required) HTTP status code, as demonstrated when using NTLM authentication.","Type":"Description","Title":"CVE-2015-4334"},{"CveYear":"2015","CveId":"4334","Ordinal":"2","NoteData":"2015-12-07","Type":"Other","Title":"Published"},{"CveYear":"2015","CveId":"4334","Ordinal":"3","NoteData":"2015-12-07","Type":"Other","Title":"Modified"}]}}}