Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f49h-cqg6-cgcc

Опубликовано: 22 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.4

Описание

In GRAU DATA Blocky before 3.1, Blocky-Gui has a Client-Side Enforcement of Server-Side Security vulnerability. An attacker with Windows administrative or debugging privileges can patch a binary in memory or on disk to bypass the password login requirement and gain full access to all functions of the program.

In GRAU DATA Blocky before 3.1, Blocky-Gui has a Client-Side Enforcement of Server-Side Security vulnerability. An attacker with Windows administrative or debugging privileges can patch a binary in memory or on disk to bypass the password login requirement and gain full access to all functions of the program.

EPSS

Процентиль: 6%
0.00024
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 6.4
nvd
около 1 года назад

In GRAU DATA Blocky before 3.1, Blocky-Gui has a Client-Side Enforcement of Server-Side Security vulnerability. An attacker with Windows administrative or debugging privileges can patch a binary in memory or on disk to bypass the password login requirement and gain full access to all functions of the program.

EPSS

Процентиль: 6%
0.00024
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-863