Description
Squid 2.2.STABLE5 and below, when using external authentication, allows attackers to bypass access controls via a newline in the user/password pair.
Affected products
Exploits & proofs of concept
- exploit-dbNational Science Foundation Squid Web Proxy 1.0/1.1/2.1 - Authentication Failureby Oezguer Kesim
Updated 12m ago · 8 sources