VULNERABILITY INTELLIGENCE

CVE-2002-0713

CVSS score7.5 HIGH
EPSS probability5.54%
CISA KEVNot currently listed
Published2002-07-26
Last modified2026-06-16
CVSS vectorAV:N/AC:L/Au:N/C:P/I:P/A:P

Description

Buffer overflows in Squid before 2.4.STABLE6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code (1) via the MSNT auth helper (msnt_auth) when using denyusers or allowusers files, (2) via the gopher client, or (3) via the FTP server directory listing parser when HTML output is generated.

Primary references