7.5

CVE-2001-1030

Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning.

Data is provided by the National Vulnerability Database (NVD)
CalderaOpenlinux Server Version3.1
ImmunixImmunix Version6.2
ImmunixImmunix Version7.0
ImmunixImmunix Version7.0_beta
SquidSquid Web Proxy Version2.3stable3
SquidSquid Web Proxy Version2.3stable4
MandrakesoftMandrake Linux Version7.1
MandrakesoftMandrake Linux Version7.2
MandrakesoftMandrake Linux Version8.0
RedhatLinux Version7.0
TrustixSecure Linux Version1.1
TrustixSecure Linux Version1.01
TrustixSecure Linux Version1.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.18% 0.37
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P