Vulnerability Name: | CVE-1999-0710 (CCN-2385) | ||||||||||||||||
Assigned: | 1999-07-23 | ||||||||||||||||
Published: | 1999-07-23 | ||||||||||||||||
Updated: | 2018-05-03 | ||||||||||||||||
Summary: | The Squid package in Red Hat Linux 5.2 and 6.0, and other distributions, installs cachemgr.cgi in a public web directory, which allows remote attackers to use it as an intermediary to connect to other systems. | ||||||||||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||||||||||
Vulnerability Type: | CWE-Other | ||||||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||||||
References: | Source: CCN Type: BugTraq Mailing List, Fri, 23 Jul 1999 16:36:32 -0700 Redhat 6.0 cachemgr.cgi lameness Source: MITRE Type: CNA CVE-1999-0710 Source: FEDORA Type: UNKNOWN FLSA-2006:152809 Source: CCN Type: RHSA-1999:025-01 Potential misuse of squid cachemgr.cgi Source: CCN Type: RHSA-2005-415 squid security update Source: CCN Type: RHSA-2005-489 squid security update Source: DEBIAN Type: UNKNOWN DSA-576 Source: DEBIAN Type: DSA-576 squid -- several vulnerabilities Source: FEDORA Type: UNKNOWN FEDORA-2005-373 Source: CONFIRM Type: UNKNOWN http://www.redhat.com/support/errata/archives/rh52-errata-general.html#squid Source: REDHAT Type: UNKNOWN RHSA-1999:025 Source: REDHAT Type: UNKNOWN RHSA-2005:489 Source: BID Type: UNKNOWN 2059 Source: CCN Type: BID-2059 Squid cachemgr.cgi Unauthorized Connection Vulnerability Source: XF Type: UNKNOWN http-cgi-cachemgr(2385) Source: XF Type: UNKNOWN http-cgi-cachemgr(2385) | ||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||
Oval Definitions | |||||||||||||||||
| |||||||||||||||||
BACK |