The cachemgr.cgi web module of Squid through 4.7 has XSS via the user_name or auth parameter.
References
Information
Published : 2019-07-05 09:15
Updated : 2020-07-10 17:15
NVD link : CVE-2019-13345
Mitre link : CVE-2019-13345
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
debian
- debian_linux
squid-cache
- squid