Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-42013

Опубликовано: 22 янв. 2025
Источник: nvd
CVSS3: 6.4
EPSS Низкий

Описание

In GRAU DATA Blocky before 3.1, Blocky-Gui has a Client-Side Enforcement of Server-Side Security vulnerability. An attacker with Windows administrative or debugging privileges can patch a binary in memory or on disk to bypass the password login requirement and gain full access to all functions of the program.

EPSS

Процентиль: 6%
0.00024
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 6.4
github
около 1 года назад

In GRAU DATA Blocky before 3.1, Blocky-Gui has a Client-Side Enforcement of Server-Side Security vulnerability. An attacker with Windows administrative or debugging privileges can patch a binary in memory or on disk to bypass the password login requirement and gain full access to all functions of the program.

EPSS

Процентиль: 6%
0.00024
Низкий

6.4 Medium

CVSS3

Дефекты

CWE-863