Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37281
HistorySep 26, 2022 - 11:57 p.m.

Information Disclosure

2022-09-2623:57:18
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15
squid
information disclosure
vulnerability
cache manager
file system
acl protection

0.001 Low

EPSS

Percentile

43.1%

squid is vulnerable to information disclosure. The vulnerability exits due to inconsistent handling of internal URIs, which allows an attacker to gain access to cache manager information in the file system via bypassing the manager ACL protection.