CVE-2002-0715
published 2002-07-26CVE-2002-0715: Vulnerability in Squid before 2.4.STABLE6 related to proxy authentication credentials may allow remote web sites to obtain the user's proxy login and password.
PriorityP420medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
2.30%
81.5th percentile
Vulnerability in Squid before 2.4.STABLE6 related to proxy authentication credentials may allow remote web sites to obtain the user's proxy login and password.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | squid | < squid 2.4.6-2 (bookworm) | squid 2.4.6-2 (bookworm) |
| squid | squid | <= 2.4.stable6 | — |
| squid | squid | >= 0 < 2.4.6-2 | 2.4.6-2 |
| squid | squid | >= 0 < 2.4.6-2 | 2.4.6-2 |
| squid | squid | >= 0 < 2.4.6-2 | 2.4.6-2 |
| squid | squid | >= 0 < 2.4.6-2 | 2.4.6-2 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
security flaw
vendor_redhat·2002-07-03·CVSS 5.0
CVE-2002-0715 [MEDIUM] security flaw
security flaw
Vulnerability in Squid before 2.4.STABLE6 related to proxy authentication credentials may allow remote web sites to obtain the user's proxy login and password.
Debian
CVE-2002-0715: squid - Vulnerability in Squid before 2.4.STABLE6 related to proxy authentication creden...
vendor_debian·2002·CVSS 5.0
CVE-2002-0715 [MEDIUM] CVE-2002-0715: squid - Vulnerability in Squid before 2.4.STABLE6 related to proxy authentication creden...
Vulnerability in Squid before 2.4.STABLE6 related to proxy authentication credentials may allow remote web sites to obtain the user's proxy login and password.
Scope: local
bookworm: resolved (fixed in 2.4.6-2)
bullseye: resolved (fixed in 2.4.6-2)
forky: resolved (fixed in 2.4.6-2)
sid: resolved (fixed in 2.4.6-2)
trixie: resolved (fixed in 2.4.6-2)
GHSA
GHSA-rh7c-c27g-cwxw: Vulnerability in Squid before 2
ghsa_unreviewed·2022-05-03
CVE-2002-0715 [MEDIUM] GHSA-rh7c-c27g-cwxw: Vulnerability in Squid before 2
Vulnerability in Squid before 2.4.STABLE6 related to proxy authentication credentials may allow remote web sites to obtain the user's proxy login and password.
OSV
CVE-2002-0715: Vulnerability in Squid before 2
osv·2002-07-26·CVSS 5.0
CVE-2002-0715 [MEDIUM] CVE-2002-0715: Vulnerability in Squid before 2
Vulnerability in Squid before 2.4.STABLE6 related to proxy authentication credentials may allow remote web sites to obtain the user's proxy login and password.
No detection rules found.
No public exploits indexed.
ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-046.0.txthttp://marc.info/?l=bugtraq&m=102674543407606&w=2http://rhn.redhat.com/errata/RHSA-2002-051.htmlhttp://rhn.redhat.com/errata/RHSA-2002-130.htmlhttp://www.iss.net/security_center/static/9478.phphttp://www.linux-mandrake.com/en/security/2002/MDKSA-2002-044.phphttp://www.securityfocus.com/bid/5154http://www.squid-cache.org/Advisories/SQUID-2002_3.txthttp://www.squid-cache.org/Versions/v2/2.4/bugs/ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-046.0.txthttp://marc.info/?l=bugtraq&m=102674543407606&w=2http://rhn.redhat.com/errata/RHSA-2002-051.htmlhttp://rhn.redhat.com/errata/RHSA-2002-130.htmlhttp://www.iss.net/security_center/static/9478.phphttp://www.linux-mandrake.com/en/security/2002/MDKSA-2002-044.phphttp://www.securityfocus.com/bid/5154http://www.squid-cache.org/Advisories/SQUID-2002_3.txthttp://www.squid-cache.org/Versions/v2/2.4/bugs/
2002-07-26
Published