Описание
Cross-site scripting (XSS) vulnerability in squidGuard.cgi in squidGuard before 1.5 allows remote attackers to inject arbitrary web script or HTML via a blocked site link.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| squidguard | fixed | 1.5-5 | package |
Примечания
Only affects an example script
Fix applied: 16_XSS-security-bugfix.patch in 1.5-5
https://www.openwall.com/lists/oss-security/2016/06/20/2
Связанные уязвимости
CVSS3: 6.1
ubuntu
почти 9 лет назад
Cross-site scripting (XSS) vulnerability in squidGuard.cgi in squidGuard before 1.5 allows remote attackers to inject arbitrary web script or HTML via a blocked site link.
CVSS3: 6.1
nvd
почти 9 лет назад
Cross-site scripting (XSS) vulnerability in squidGuard.cgi in squidGuard before 1.5 allows remote attackers to inject arbitrary web script or HTML via a blocked site link.