Security 10748 Published by

Microsoft published a security advisory about a vulnerability in web proxy auto-discovery (WPAD)



Microsoft is investigating new public reports of a vulnerability in the way Windows resolves hostnames that do not include a fully-qualified domain name (FQDN). The technology that the vulnerability affects is Web Proxy Auto-Discovery (WPAD). Microsoft has not received any information to indicate that this vulnerability has been publicly used to attack customers and Microsoft is not aware of any customer impact at this time. Microsoft is aggressively investigating the public reports.
Microsoft Security Advisory (945713): Vulnerability in Web Proxy Auto-Discovery (WPAD) Could Allow Information Disclosure