Squid Proxy squid_ldap_auth Authentication Bypass Vulnerability

Squid Proxy is reported prone to an authentication-bypass vulnerability. This issue seems to result from insufficient input validation.

The 'squid_ldap_auth' module is reported affected by this issue. A remote attacker may gain unauthorized access or gain elevated privileges from bypassing access controls.

Squid versions 2.5 and earlier are reported prone to this vulnerability.


 

Privacy Statement
Copyright 2010, SecurityFocus