CPE
high
advisory
HAProxy CVE-2021-40346 Integer Overflow Leading to HTTP Request Smuggling and ACL Bypass
2 TTPs 1 CVEA critical integer overflow vulnerability, CVE-2021-40346, in HAProxy's `htx_add_header()` function allows unauthenticated attackers to bypass access control rules by crafting HTTP requests with specific header name lengths, leading to HTTP request smuggling and unauthorized access to backend paths, for which a public exploit is available.
HAProxy +4
integer-overflow
http-smuggling
acl-bypass
webserver
2t
1c
critical
advisory
Computer Account Changes via Anonymous Logon Detected
2 rules 1 TTP 1 CVEDetection of Windows Event 4742 indicating a computer account change performed by an ANONYMOUS LOGON account, which is abnormal and could signify malicious activity, particularly Zerologon exploitation.
PoC
Splunk Enterprise +6
zerologon
privilege-escalation
windows
2r
1t
1c
updated