Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g8hh-whpr-gfp2

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning.

Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning.

EPSS

Процентиль: 40%
0.00184
Низкий

Связанные уязвимости

redhat
около 24 лет назад

Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning.

nvd
около 24 лет назад

Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning.

EPSS

Процентиль: 40%
0.00184
Низкий