FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-1999-0710

This CVE name corresponds to:

Entered Topic
2005-05-19 squid -- possible abuse of cachemgr.cgi

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type CVE Entry
Name CVE-1999-0710

Description

The Squid package in Red Hat Linux 5.2 and 6.0, and other distributions, installs cachemgr.cgi in a public web directory, which allows remote attackers to use it as an intermediary to connect to other systems.

References

Source Reference
BUGTRAQ 19990725 Redhat 6.0 cachemgr.cgi lameness
CONFIRM http://www.redhat.com/support/errata/archives/rh52-errata-general.html#squid
DEBIAN DSA-576
FEDORA FEDORA-2005-373
FEDORA FLSA-2006:152809
REDHAT RHSA-1999:025
REDHAT RHSA-2005:489
BID 2059
XF http-cgi-cachemgr(2385)