Squid Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2019-13345 - Vulnerability Database

Squid Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2019-13345

Medium
Reference: CVE-2019-13345
Title: Squid Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

The cachemgr.cgi web module of Squid through 4.7 has XSS via the user_name or auth parameter.