Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2005-0174

Squid 2.5 up to 2.5.STABLE7 allows remote attackers to poison the cache or conduct certain attacks via headers that do not follow the HTTP specification, including (1) multiple Content-Length headers, (2) carriage return (CR) characters that are not part of a CRLF pair, and (3) header names containing whitespace characters.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.86
EPSS Ranking 99.3%
CVSS Severity
CVSS v2 Score 5.0
References
Products affected by CVE-2005-0174
  • Squid » Squid » Version: 2.5.6
    cpe:2.3:a:squid:squid:2.5.6
  • Squid » Squid » Version: 2.5.stable1
    cpe:2.3:a:squid:squid:2.5.stable1
  • Squid » Squid » Version: 2.5.stable2
    cpe:2.3:a:squid:squid:2.5.stable2
  • Squid » Squid » Version: 2.5.stable3
    cpe:2.3:a:squid:squid:2.5.stable3
  • Squid » Squid » Version: 2.5.stable4
    cpe:2.3:a:squid:squid:2.5.stable4
  • Squid » Squid » Version: 2.5.stable5
    cpe:2.3:a:squid:squid:2.5.stable5
  • Squid » Squid » Version: 2.5.stable6
    cpe:2.3:a:squid:squid:2.5.stable6
  • Squid » Squid » Version: 2.5.stable7
    cpe:2.3:a:squid:squid:2.5.stable7
  • Squid » Squid » Version: 2.5_.stable1
    cpe:2.3:a:squid:squid:2.5_.stable1
  • Squid » Squid » Version: 2.5_.stable3
    cpe:2.3:a:squid:squid:2.5_.stable3
  • Squid » Squid » Version: 2.5_.stable4
    cpe:2.3:a:squid:squid:2.5_.stable4
  • Squid » Squid » Version: 2.5_.stable5
    cpe:2.3:a:squid:squid:2.5_.stable5
  • Squid » Squid » Version: 2.5_.stable6
    cpe:2.3:a:squid:squid:2.5_.stable6
  • Squid » Squid » Version: 2.5_stable3
    cpe:2.3:a:squid:squid:2.5_stable3
  • Squid » Squid » Version: 2.5_stable4
    cpe:2.3:a:squid:squid:2.5_stable4
  • Squid » Squid » Version: 2.5_stable9
    cpe:2.3:a:squid:squid:2.5_stable9


Contact Us

Shodan ® - All rights reserved