Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vm6c-fx3m-m9w4

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Mozilla Firefox before 42.0, when NTLM v1 is enabled for HTTP authentication, allows remote attackers to obtain sensitive hostname information by constructing a crafted web site that sends an NTLM request and reads the Workstation field of an NTLM type 3 message.

Mozilla Firefox before 42.0, when NTLM v1 is enabled for HTTP authentication, allows remote attackers to obtain sensitive hostname information by constructing a crafted web site that sends an NTLM request and reads the Workstation field of an NTLM type 3 message.

EPSS

Процентиль: 70%
0.00645
Низкий

Дефекты

CWE-200

Связанные уязвимости

ubuntu
больше 9 лет назад

Mozilla Firefox before 42.0, when NTLM v1 is enabled for HTTP authentication, allows remote attackers to obtain sensitive hostname information by constructing a crafted web site that sends an NTLM request and reads the Workstation field of an NTLM type 3 message.

redhat
больше 9 лет назад

Mozilla Firefox before 42.0, when NTLM v1 is enabled for HTTP authentication, allows remote attackers to obtain sensitive hostname information by constructing a crafted web site that sends an NTLM request and reads the Workstation field of an NTLM type 3 message.

nvd
больше 9 лет назад

Mozilla Firefox before 42.0, when NTLM v1 is enabled for HTTP authentication, allows remote attackers to obtain sensitive hostname information by constructing a crafted web site that sends an NTLM request and reads the Workstation field of an NTLM type 3 message.

debian
больше 9 лет назад

Mozilla Firefox before 42.0, when NTLM v1 is enabled for HTTP authenti ...

fstec
больше 9 лет назад

Уязвимость браузера Firefox, позволяющая нарушителю получить доступ к защищаемой информации

EPSS

Процентиль: 70%
0.00645
Низкий

Дефекты

CWE-200