The cachemgr.cgi web module of Squid through 4.7 has XSS via the user_name or auth parameter.
References
Information
Published : 2019-07-05 16:15
Updated : 2020-07-11 00:15
NVD link : CVE-2019-13345
Mitre link : CVE-2019-13345
JSON object : View
Products Affected
debian
- debian_linux
squid-cache
- squid
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
