Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-19131

Опубликовано: 09 нояб. 2018
Источник: ubuntu
Приоритет: low
EPSS Средний
CVSS2: 4.3
CVSS3: 6.1

Описание

Squid before 4.4 has XSS via a crafted X.509 certificate during HTTP(S) error page generation for certificate errors.

РелизСтатусПримечание
bionic

DNE

cosmic

not-affected

not built with --with-openssl
devel

not-affected

not built with --with-openssl
esm-infra-legacy/trusty

DNE

precise/esm

DNE

trusty

DNE

trusty/esm

DNE

upstream

needs-triage

xenial

DNE

Показывать по

РелизСтатусПримечание
bionic

not-affected

not built with --with-openssl
cosmic

DNE

devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [not built with --with-openssl]]
esm-infra/bionic

not-affected

not built with --with-openssl
esm-infra/xenial

not-affected

not built with --with-openssl
precise/esm

not-affected

not built with --with-openssl
trusty

not-affected

not built with --with-openssl
trusty/esm

DNE

trusty was not-affected [not built with --with-openssl]
upstream

needs-triage

Показывать по

EPSS

Процентиль: 93%
0.10782
Средний

4.3 Medium

CVSS2

6.1 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.6
redhat
больше 7 лет назад

Squid before 4.4 has XSS via a crafted X.509 certificate during HTTP(S) error page generation for certificate errors.

CVSS3: 6.1
nvd
около 7 лет назад

Squid before 4.4 has XSS via a crafted X.509 certificate during HTTP(S) error page generation for certificate errors.

CVSS3: 6.1
debian
около 7 лет назад

Squid before 4.4 has XSS via a crafted X.509 certificate during HTTP(S ...

suse-cvrf
около 7 лет назад

Security update for squid3

CVSS3: 6.1
github
больше 3 лет назад

Squid before 4.4 has XSS via a crafted X.509 certificate during HTTP(S) error page generation for certificate errors.

EPSS

Процентиль: 93%
0.10782
Средний

4.3 Medium

CVSS2

6.1 Medium

CVSS3