Apache HttpComponents 'HttpClient' Information Disclosure Vulnerability
14 Jul. 2012
Summary
Apache HttpComponents is prone to an information-disclosure vulnerability that may expose users' passwords. The issue occurs in the 'HttpClient' component.
Vulnerable Systems:
*Apache Software Foundation HttpComponents HttpClient 4.1
Successful exploits will allow attackers to obtain sensitive information that may aid in further attacks.
HttpClient 4.1 is vulnerable; other versions may also be affected.
Vendor Status:
Currently we are not aware of any vendor-supplied patches