Описание
The PartyGaming PartyPoker client program 121/120 does not properly verify the authenticity of updates, which allows remote man-in-the-middle attackers to execute arbitrary code via a Trojan horse update.
Ссылки
- Mailing ListThird Party Advisory
- Broken LinkThird Party AdvisoryVDB Entry
- Broken LinkThird Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Mailing ListThird Party Advisory
- Broken LinkThird Party AdvisoryVDB Entry
- Broken LinkThird Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:party_gaming:party_poker_client:121-120:*:*:*:*:*:*:*
EPSS
Процентиль: 61%
0.00409
Низкий
8.1 High
CVSS3
7.6 High
CVSS2
Дефекты
CWE-494
Связанные уязвимости
CVSS3: 8.1
github
почти 4 года назад
The PartyGaming PartyPoker client program 121/120 does not properly verify the authenticity of updates, which allows remote man-in-the-middle attackers to execute arbitrary code via a Trojan horse update.
EPSS
Процентиль: 61%
0.00409
Низкий
8.1 High
CVSS3
7.6 High
CVSS2
Дефекты
CWE-494