PT-2019-19711 · Google+3 · Google Chrome+4
Martin Lemay
·
Publicado
2019-03-04
·
Atualizado
2020-08-24
·
CVE-2019-9565
CVSS v3.1
9.1
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Druide Antidote RX, HD versions 8 before 8.05.2287
Druide Antidote RX, HD versions 9 before 9.5.3937
Druide Antidote RX, HD versions 10 before 10.1.2147
Description
The issue allows remote attackers to steal NTLM hashes or perform SMB relay attacks when the product is launched directly or indirectly via integrations like Chrome, Firefox, Word, or Outlook. This occurs because the product attempts to access a share with the PLUG-INS subdomain name, which an attacker may be able to register using Active Directory Domain Services.
Recommendations
For versions 8 before 8.05.2287, update to version 8.05.2287 or later to resolve the issue.
For versions 9 before 9.5.3937, update to version 9.5.3937 or later to resolve the issue.
For versions 10 before 10.1.2147, update to version 10.1.2147 or later to resolve the issue.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Google Chrome
Druide Antidote
Firefox
Outlook
Office Word