Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Regis Leroy

#36094of 53,632
7.5Total CVSS
Vulnerabilities · 1
PT-2020-2567
7.5
2020-02-04
Squid · Squid · CVE-2020-8449
**Name of the Vulnerable Software and Affected Versions** Squid versions prior to 4.10 **Description** The issue exists due to insufficient input validation in the Squid proxy server, allowing a remote attacker to disclose protected information by interpreting crafted HTTP requests in unexpected ways, potentially accessing server resources that are prohibited by earlier security filters. **Recommendations** For Squid versions prior to 4.10, update to version 4.10 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive server resources to minimize the risk of exploitation.