Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r2r7-rw7m-4rmc

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

An issue was discovered in PortSwigger Burp Suite before 2021.2. During viewing of a malicious request, it can be manipulated into issuing a request that does not respect its upstream proxy configuration. This could leak NetNTLM hashes on Windows systems that fail to block outbound SMB.

An issue was discovered in PortSwigger Burp Suite before 2021.2. During viewing of a malicious request, it can be manipulated into issuing a request that does not respect its upstream proxy configuration. This could leak NetNTLM hashes on Windows systems that fail to block outbound SMB.

EPSS

Процентиль: 54%
0.00313
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 6.5
nvd
почти 5 лет назад

An issue was discovered in PortSwigger Burp Suite before 2021.2. During viewing of a malicious request, it can be manipulated into issuing a request that does not respect its upstream proxy configuration. This could leak NetNTLM hashes on Windows systems that fail to block outbound SMB.

CVSS3: 6.5
debian
почти 5 лет назад

An issue was discovered in PortSwigger Burp Suite before 2021.2. Durin ...

EPSS

Процентиль: 54%
0.00313
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-74