Attack Surface Management Solutions | Sn1perSecurity LLC
We are thrilled to announce the release of Sn1per Enterprise v20240608, packed with cutting-edge features and enhancements designed to elevate your cybersecurity capabilities. This latest iteration of our flagship product is a testament to our unwavering commitment to providing our customers with the most advanced and comprehensive security solutions.
Our security research team recently discovered a critical “0day” vulnerability which was assigned CVE-2024-21733. The vulnerability was discovered by xer0dayz from Sn1perSecurity LLC and allows attackers to force a victim’s browser to de-synchronize its connection with websites hosted on top of Apache Tomcat, causing sensitive data to be smuggled from the server and/or client connections. In some cases, this can leak sensitive data such as clear-text credentials.
Severity: CRITICAL | Exploit Available: Yes | Exploitability: Easy | Remotely Exploitable: Yes