CVE-2023-29446

Publication date

2024-01-10 20:21:51

Family

Dragos

State

PUBLISHED

Description

An improper input validation vulnerability has been discovered that could allow an adversary to inject a UNC path via a malicious project file. This allows an adversary to capture NLTMv2 hashes and potentially crack them offline.