CVE-2009-2936
Published Apr 5, 2010The Command Line Interface (aka Server CLI or administration interface) in the master process in the reverse proxy server in Varnish before 2.1.0 does not require authentication f…
Vendor/product archive
2 CVEs tagged to varnish.projects.linpro / varnish — 1 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.
The Command Line Interface (aka Server CLI or administration interface) in the master process in the reverse proxy server in Varnish before 2.1.0 does not require authentication f…
Varnish 2.0.6 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary c…