PT-2019-19859 · Thinkst · Thinkst Canarytokens

Benjamin Zink Loft

+2

·

Published

2019-03-14

·

Updated

2019-04-08

·

CVE-2019-9768

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Thinkst Canarytokens through commit hash 4e89ee0 (2019-03-01)
Description The issue makes it easier for attackers to estimate whether a Word document contains a token, due to limited variation in size, metadata, and timestamp.
Recommendations For Thinkst Canarytokens through commit hash 4e89ee0 (2019-03-01), at the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-9768

Affected Products

Thinkst Canarytokens