Format string vulnerability in the allowuser code for the Stellar-X msntauth authentication module, as distributed in Squid 2.4.STABLE6 and earlier, allows remote attackers to execute arbitrary code via format strings in the user name, which are not properly handled in a syslog call.
References
Configurations
History
No history.
Information
Published : 2002-10-04 04:00
Updated : 2024-02-28 10:24
NVD link : CVE-2002-0916
Mitre link : CVE-2002-0916
CVE.ORG link : CVE-2002-0916
JSON object : View
Products Affected
stellar-x_software
- msntauth
CWE