CVE-2017-16639
Tor Browser on Windows before 8.0 allows remote attackers to bypass the intended anonymity feature and discover a client IP address, a different vulnerability than CVE-2017-16541. User interaction is required to trigger this vulnerability.
- Affected products
- Tor Browser
- Torproject Tor Browser
- < 8.0
- Fix
- Available
- CVSS 3.0
- 4.3 MEDIUM
- EPSS
- 2.6% (84th percentile)
- Weakness
- CWE-200
- NVD status
- Modified
- Published
- 2018-09-14
CVE-2017-16639 at NVD
1 known exploit for CVE-2017-16639
Proof-of-concept code and exploit modules indexed by Sploitus