
Episode 11: CV$$, Web Cache Deception, and SSTI
Critical Thinking - Bug Bounty Podcast
00:00
Introduction
MDSec Labs, which I have not actually heard of before, released a write up for a CVE that they found in Outlook. It is just a really good example of an attack vector for looking at actual desktop applications and looking at Microsoft Outlook. you may be able to make a valid argument for that bug by setting AC to high and then, you know, moving forward. RanaRater popping in to remind you to set your CVSS integrity to high by subscribing to our YouTube channel at Critical Thinking Podcast.
Transcript
Play full episode