releases.portswigger.netConfirmation
http://releases.portswigger.net/2018/06/1734.html CVE-2018-1153
HIGH
Record summary
CVE-2018-1153 has a selected CVSS score of 7.4 (high).
Description
Burp Suite Community Edition 1.7.32 and 1.7.33 fail to validate the server certificate in a couple of HTTPS requests which allows a man in the middle to modify or view traffic.
Description source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Burp Suite Community EditionBrowse Tenable / Burp Suite Community Edition | CVE List | 1.7.32 and 1.7.33 | affected |
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-1153 tenable.com
https://www.tenable.com/security/research/tra-2018-18