7.5
CVE-2016-10002
- EPSS 11.39%
- Veröffentlicht 27.01.2017 17:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
- Quelle cve@mitre.org
- Teams Watchlist Login
- Unerledigt Login
Incorrect processing of responses to If-None-Modified HTTP conditional requests in Squid HTTP Proxy 3.1.10 through 3.1.23, 3.2.0.3 through 3.5.22, and 4.0.1 through 4.0.16 leads to client-specific Cookie data being leaked to other clients. Attack requests can easily be crafted by a client to probe a cache for this information.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Debian ≫ Debian Linux Version8.0
Squid-cache ≫ Squid Version3.1.10
Squid-cache ≫ Squid Version3.1.11
Squid-cache ≫ Squid Version3.1.12
Squid-cache ≫ Squid Version3.1.14
Squid-cache ≫ Squid Version3.1.15
Squid-cache ≫ Squid Version3.1.16
Squid-cache ≫ Squid Version3.1.17
Squid-cache ≫ Squid Version3.1.18
Squid-cache ≫ Squid Version3.1.19
Squid-cache ≫ Squid Version3.1.20
Squid-cache ≫ Squid Version3.1.21
Squid-cache ≫ Squid Version3.1.22
Squid-cache ≫ Squid Version3.1.23
Squid-cache ≫ Squid Version3.2.0.3
Squid-cache ≫ Squid Version3.2.0.4
Squid-cache ≫ Squid Version3.2.0.5
Squid-cache ≫ Squid Version3.2.0.6
Squid-cache ≫ Squid Version3.2.0.7
Squid-cache ≫ Squid Version3.2.0.8
Squid-cache ≫ Squid Version3.2.0.9
Squid-cache ≫ Squid Version3.2.0.10
Squid-cache ≫ Squid Version3.2.0.11
Squid-cache ≫ Squid Version3.2.0.12
Squid-cache ≫ Squid Version3.2.0.13
Squid-cache ≫ Squid Version3.2.0.14
Squid-cache ≫ Squid Version3.2.0.15
Squid-cache ≫ Squid Version3.2.0.16
Squid-cache ≫ Squid Version3.2.0.17
Squid-cache ≫ Squid Version3.2.0.18
Squid-cache ≫ Squid Version3.2.0.19
Squid-cache ≫ Squid Version3.2.1
Squid-cache ≫ Squid Version3.2.2
Squid-cache ≫ Squid Version3.2.3
Squid-cache ≫ Squid Version3.2.4
Squid-cache ≫ Squid Version3.2.5
Squid-cache ≫ Squid Version3.2.6
Squid-cache ≫ Squid Version3.2.7
Squid-cache ≫ Squid Version3.2.8
Squid-cache ≫ Squid Version3.2.9
Squid-cache ≫ Squid Version3.2.10
Squid-cache ≫ Squid Version3.2.11
Squid-cache ≫ Squid Version3.2.12
Squid-cache ≫ Squid Version3.2.13
Squid-cache ≫ Squid Version3.2.14
Squid-cache ≫ Squid Version3.3.0.1
Squid-cache ≫ Squid Version3.3.0.2
Squid-cache ≫ Squid Version3.3.0.3
Squid-cache ≫ Squid Version3.3.1
Squid-cache ≫ Squid Version3.3.2
Squid-cache ≫ Squid Version3.3.3
Squid-cache ≫ Squid Version3.3.4
Squid-cache ≫ Squid Version3.3.5
Squid-cache ≫ Squid Version3.3.6
Squid-cache ≫ Squid Version3.3.7
Squid-cache ≫ Squid Version3.3.8
Squid-cache ≫ Squid Version3.3.9
Squid-cache ≫ Squid Version3.3.10
Squid-cache ≫ Squid Version3.3.11
Squid-cache ≫ Squid Version3.3.12
Squid-cache ≫ Squid Version3.3.13
Squid-cache ≫ Squid Version3.3.14
Squid-cache ≫ Squid Version3.4.0.1
Squid-cache ≫ Squid Version3.4.0.2
Squid-cache ≫ Squid Version3.4.0.3
Squid-cache ≫ Squid Version3.4.0.4
Squid-cache ≫ Squid Version3.4.1
Squid-cache ≫ Squid Version3.4.2
Squid-cache ≫ Squid Version3.4.3
Squid-cache ≫ Squid Version3.4.4
Squid-cache ≫ Squid Version3.4.5
Squid-cache ≫ Squid Version3.4.6
Squid-cache ≫ Squid Version3.4.7
Squid-cache ≫ Squid Version3.4.8
Squid-cache ≫ Squid Version3.4.9
Squid-cache ≫ Squid Version3.4.10
Squid-cache ≫ Squid Version3.4.11
Squid-cache ≫ Squid Version3.4.12
Squid-cache ≫ Squid Version3.4.13
Squid-cache ≫ Squid Version3.4.14
Squid-cache ≫ Squid Version3.5.0.1
Squid-cache ≫ Squid Version3.5.0.2
Squid-cache ≫ Squid Version3.5.0.3
Squid-cache ≫ Squid Version3.5.0.4
Squid-cache ≫ Squid Version3.5.1
Squid-cache ≫ Squid Version3.5.2
Squid-cache ≫ Squid Version3.5.3
Squid-cache ≫ Squid Version3.5.4
Squid-cache ≫ Squid Version3.5.5
Squid-cache ≫ Squid Version3.5.6
Squid-cache ≫ Squid Version3.5.7
Squid-cache ≫ Squid Version3.5.8
Squid-cache ≫ Squid Version3.5.9
Squid-cache ≫ Squid Version3.5.10
Squid-cache ≫ Squid Version3.5.11
Squid-cache ≫ Squid Version3.5.12
Squid-cache ≫ Squid Version3.5.13
Squid-cache ≫ Squid Version3.5.14
Squid-cache ≫ Squid Version3.5.15
Squid-cache ≫ Squid Version3.5.16
Squid-cache ≫ Squid Version3.5.17
Squid-cache ≫ Squid Version3.5.18
Squid-cache ≫ Squid Version3.5.19
Squid-cache ≫ Squid Version3.5.20
Squid-cache ≫ Squid Version3.5.21
Squid-cache ≫ Squid Version3.5.22
Squid-cache ≫ Squid Version4.0.1
Squid-cache ≫ Squid Version4.0.2
Squid-cache ≫ Squid Version4.0.3
Squid-cache ≫ Squid Version4.0.4
Squid-cache ≫ Squid Version4.0.5
Squid-cache ≫ Squid Version4.0.6
Squid-cache ≫ Squid Version4.0.7
Squid-cache ≫ Squid Version4.0.8
Squid-cache ≫ Squid Version4.0.9
Squid-cache ≫ Squid Version4.0.10
Squid-cache ≫ Squid Version4.0.11
Squid-cache ≫ Squid Version4.0.12
Squid-cache ≫ Squid Version4.0.13
Squid-cache ≫ Squid Version4.0.14
Squid-cache ≫ Squid Version4.0.15
Squid-cache ≫ Squid Version4.0.16
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 11.39% | 0.933 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.