Skip to main content

Vendor/product archive

varnish.projects.linpro / varnish CVEs

Beta · best-effort

2 CVEs tagged to varnish.projects.linpro / varnish1 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2009-2936

Published Apr 5, 2010

The Command Line Interface (aka Server CLI or administration interface) in the master process in the reverse proxy server in Varnish before 2.1.0 does not require authentication f…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2009-4488

Published Jan 13, 2010

Varnish 2.0.6 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary c…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1