mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-01 15:11:34 +02:00
20 lines
897 B
Markdown
20 lines
897 B
Markdown
### [CVE-2017-16639](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-16639)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Tor Browser on Windows before 8.0 allows remote attackers to bypass the intended anonymity feature and discover a client IP address, a different vulnerability than CVE-2017-16541. User interaction is required to trigger this vulnerability.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- http://packetstormsecurity.com/files/149351/Tor-Browser-SMB-Deanonymization-Information-Disclosure.html
|
|
- https://seclists.org/bugtraq/2018/Sep/29
|
|
- https://www.wearesegment.com/research/tor-browser-deanonymization-with-smb/
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|