Widespread RCE compromise likely with critical TinyProxy bug

Fifty-seven percent of more than 90,000 internet-exposed hosts continue to run TinyProxy instances unpatched against the critical use-after-free vulnerability, tracked as CVE-2023-49606, which could be leveraged to facilitate remote code execution attacks via an unauthenticated HTTP request, reports The Hacker News.

Article Link: Widespread RCE compromise likely with critical TinyProxy bug | SC Media