vulnerability

Amazon Linux AMI 2: CVE-2019-18860: Security patch for squid (ALAS-2023-2318)

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Mar 20, 2020
Added
Oct 27, 2023
Modified
Nov 27, 2024

Description

Squid before 4.9, when certain web browsers are used, mishandles HTML in the host (aka hostname) parameter to cachemgr.cgi.

Solutions

amazon-linux-ami-2-upgrade-squidamazon-linux-ami-2-upgrade-squid-debuginfoamazon-linux-ami-2-upgrade-squid-migration-scriptamazon-linux-ami-2-upgrade-squid-sysvinit
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.