CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.7. See the original NVD description below for full technical details.
CVE
CVE-2023-29446
Severity
MEDIUM
CVSS
4.7
EPSS
0.21%
Original NVD Description
An improper input validation vulnerability has been discovered that could allow an adversary to inject a UNC path via a malicious project file. This allows an adversary to capture NLTMv2 hashes and potentially crack them offline.
Related CVEs
Other vulnerabilities affecting the same vendor(s)