Squid 2.4 STABLE3 and earlier does not properly disable HTCP, even when "htcp_port 0" is specified in squid.conf, which could allow remote attackers to bypass intended access restrictions.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2002-03-07 21:00
Updated : 2016-10-17 19:15
NVD link : CVE-2002-0067
Mitre link : CVE-2002-0067
JSON object : View
CWE
Products Affected
redhat
- linux
squid
- squid