Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Format string vulnerability in the allowuser code for the Stellar-X msntauth authentication module, as distributed in Squid 2.4.STABLE6 and earlier, allows remote attackers to execute arbitrary code via format strings in the user name, which are not properly handled in a syslog call.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Squid tellar-X msntauth认证模块allowuser代码格式串漏洞
Vulnerability Description
分配在Squid 2.4.STABLE6及其之前版本中tellar-X msntauth认证模块的allowuser代码存在格式串漏洞。远程攻击者借助用户名中的格式串执行任意代码,该漏洞在syslog调用中不能正确操作。
CVSS Information
N/A
Vulnerability Type
N/A