VendorsNational Science Foundationsquid_web_proxy_cacheall versions
Vulnerabilities

National Science Foundation Squid Web Proxy Cache

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2004-0541
Buffer overflow in the ntlm_check_auth (NTLM authentication) function for Squid Web Proxy Cache 2.5.x and 3.x, when compiled with NTLM handlers enabled, allows remote attackers to execute arbitrary code via a long password ("pass" variable).
Published 2004-06-10 · Modified
10.02 PoCEPSS 0.711
CVE-2004-2480
Squid Web Proxy Cache 2.3.STABLE5 allows remote attackers to bypass security controls and access arbitrary websites via "@@" sequences in a URL within Internet Explorer.
Published 2005-08-21 · Modified
5.01 PoCEPSS 0.030
CVE-2004-2479
Squid Web Proxy Cache 2.5 might allow remote attackers to obtain sensitive information via URLs containing invalid hostnames that cause DNS operations to fail, which results in references to previously used error messages.
Published 2005-08-21 · Modified
5.0EPSS 0.021