Логотип exploitDog
bind:CVE-2023-50786
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-50786

Количество 2

Количество 2

nvd логотип

CVE-2023-50786

7 месяцев назад

Dradis through 4.16.0 allows referencing external images (resources) over HTTPS, instead of forcing the use of embedded (uploaded) images. This can be leveraged by an authorized author to attempt to steal the Net-NTLM hashes of other authors on a Windows domain network.

CVSS3: 4.1
EPSS: Низкий
github логотип

GHSA-2chh-r2hc-8q2g

7 месяцев назад

Dradis through 4.16.0 allows referencing external images (resources) over HTTPS, instead of forcing the use of embedded (uploaded) images. This can be leveraged by an authorized author to attempt to steal the Net-NTLM hashes of other authors on a Windows domain network.

CVSS3: 4.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-50786

Dradis through 4.16.0 allows referencing external images (resources) over HTTPS, instead of forcing the use of embedded (uploaded) images. This can be leveraged by an authorized author to attempt to steal the Net-NTLM hashes of other authors on a Windows domain network.

CVSS3: 4.1
0%
Низкий
7 месяцев назад
github логотип
GHSA-2chh-r2hc-8q2g

Dradis through 4.16.0 allows referencing external images (resources) over HTTPS, instead of forcing the use of embedded (uploaded) images. This can be leveraged by an authorized author to attempt to steal the Net-NTLM hashes of other authors on a Windows domain network.

CVSS3: 4.1
0%
Низкий
7 месяцев назад

Уязвимостей на страницу