Medium severity6.5NVD Advisory· Published Mar 29, 2021· Updated Jun 17, 2026
CVE-2021-29416
CVE-2021-29416
Description
An issue was discovered in PortSwigger Burp Suite before 2021.2. During viewing of a malicious request, it can be manipulated into issuing a request that does not respect its upstream proxy configuration. This could leak NetNTLM hashes on Windows systems that fail to block outbound SMB.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:portswigger:burp_suite:*:*:*:*:community:*:*:*+ 2 more
- cpe:2.3:a:portswigger:burp_suite:*:*:*:*:community:*:*:*range: <2021.2
- cpe:2.3:a:portswigger:burp_suite:*:*:*:*:professional:*:*:*range: <2021.2
- (no CPE)range: <2021.2
- PortSwigger/Burp Suitedescription
Patches
Vulnerability mechanics
References
2- hackerone.com/reports/1054382nvdExploitIssue TrackingThird Party Advisory
- portswigger.net/burp/releases/professional-community-2020-12nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.