Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9pj4-fqm8-w5x7

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Squid before 3.5.6 does not properly handle CONNECT method peer responses when configured with cache_peer, which allows remote attackers to bypass intended restrictions and gain access to a backend proxy via a CONNECT request.

Squid before 3.5.6 does not properly handle CONNECT method peer responses when configured with cache_peer, which allows remote attackers to bypass intended restrictions and gain access to a backend proxy via a CONNECT request.

EPSS

Процентиль: 95%
0.19753
Средний

Связанные уязвимости

ubuntu
больше 10 лет назад

Squid before 3.5.6 does not properly handle CONNECT method peer responses when configured with cache_peer, which allows remote attackers to bypass intended restrictions and gain access to a backend proxy via a CONNECT request.

redhat
больше 10 лет назад

Squid before 3.5.6 does not properly handle CONNECT method peer responses when configured with cache_peer, which allows remote attackers to bypass intended restrictions and gain access to a backend proxy via a CONNECT request.

nvd
больше 10 лет назад

Squid before 3.5.6 does not properly handle CONNECT method peer responses when configured with cache_peer, which allows remote attackers to bypass intended restrictions and gain access to a backend proxy via a CONNECT request.

debian
больше 10 лет назад

Squid before 3.5.6 does not properly handle CONNECT method peer respon ...

fstec
больше 10 лет назад

Уязвимость прокси-сервера Squid, позволяющая нарушителю обойти существующие ограничения и получить доступ к серверу

EPSS

Процентиль: 95%
0.19753
Средний