Vulnerabilities (CVE)

Filtered by vendor Squidguard Subscribe
Filtered by product Squidguard
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-8936 1 Squidguard 1 Squidguard 2024-02-04 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting (XSS) vulnerability in squidGuard.cgi in squidGuard before 1.5 allows remote attackers to inject arbitrary web script or HTML via a blocked site link.
CVE-2009-3700 1 Squidguard 1 Squidguard 2024-02-04 5.0 MEDIUM N/A
Buffer overflow in sgLog.c in squidGuard 1.3 and 1.4 allows remote attackers to cause a denial of service (application hang or loss of blocking functionality) via a long URL with many / (slash) characters, related to "emergency mode."
CVE-2009-3826 1 Squidguard 1 Squidguard 2024-02-04 5.0 MEDIUM N/A
Multiple buffer overflows in squidGuard 1.4 allow remote attackers to bypass intended URL blocking via a long URL, related to (1) the relationship between a certain buffer size in squidGuard and a certain buffer size in Squid and (2) a redirect URL that contains information about the originally requested URL.