CVEs Blog | G5 Cyber Security

CVE-2020-25097 – An issue was discovered in Squid through 4.13 and 5.x through 5.0.4. Due

An issue was discovered in Squid through 4.13 and 5.x through 5.0.4. Due to improper input validation, it allows a trusted client to perform HTTP Request Smuggling and access services otherwise forbidden by the security controls. This occurs for certain uri_whitespace configuration settings.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-25097

Reference (s):

Exit mobile version