PT-2019-19711 · Google+3 · Google Chrome+4

Martin Lemay

·

Publicado

2019-03-04

·

Atualizado

2020-08-24

·

CVE-2019-9565

CVSS v3.1

9.1

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Druide Antidote RX, HD versions 8 before 8.05.2287 Druide Antidote RX, HD versions 9 before 9.5.3937 Druide Antidote RX, HD versions 10 before 10.1.2147
Description The issue allows remote attackers to steal NTLM hashes or perform SMB relay attacks when the product is launched directly or indirectly via integrations like Chrome, Firefox, Word, or Outlook. This occurs because the product attempts to access a share with the PLUG-INS subdomain name, which an attacker may be able to register using Active Directory Domain Services.
Recommendations For versions 8 before 8.05.2287, update to version 8.05.2287 or later to resolve the issue. For versions 9 before 9.5.3937, update to version 9.5.3937 or later to resolve the issue. For versions 10 before 10.1.2147, update to version 10.1.2147 or later to resolve the issue.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2019-9565

Produtos afetados

Google Chrome
Druide Antidote
Firefox
Outlook
Office Word