CVE-2008-1168
Squid Analysis Report Generator (Sarg) 2.2.3.1 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in Squid Analysis Report Generator (Sarg) 2.2.3.1 allows remote attackers to inject arbitrary web script or HTML via the User-Agent header, which is not properly handled when displaying the Squid proxy log. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
References (9)
Scores
EPSS
0.0065
EPSS Percentile
70.5%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
sarg/squid_analysis_report_generator
Timeline
Published
Mar 05, 2008
Tracked Since
Feb 18, 2026