Vulnerabilities
Vulnerable Software
Squid-Cache:  >> Squid  >> 4.14  Security Vulnerabilities
An issue was discovered in Squid 4.x before 4.15 and 5.x before 5.0.6. If a remote server sends a certain response header over HTTP or HTTPS, there is a denial of service. This header can plausibly occur in benign network traffic.
CVSS Score
6.5
EPSS Score
0.718
Published
2021-05-27
Squid through 4.14 and 5.x through 5.0.5, in some configurations, allows information disclosure because of an out-of-bounds read in WCCP protocol data. This can be leveraged as part of a chain for remote code execution as nobody.
CVSS Score
3.7
EPSS Score
0.129
Published
2021-03-09


Contact Us

Shodan ® - All rights reserved