In GRAU DATA Blocky before 3.1, Blocky-Gui has a Client-Side Enforcement of Server-Side Security vulnerability. An attacker with Windows administrative or debugging privileges can patch a binary in memory or on disk to bypass the password login requirement and gain full access to all functions of the program.
References
Configurations
No configuration.
History
04 Feb 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.4 |
CWE | CWE-863 | |
Summary |
|
22 Jan 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-01-22 16:15
Updated : 2025-02-04 19:15
NVD link : CVE-2024-42013
Mitre link : CVE-2024-42013
CVE.ORG link : CVE-2024-42013
JSON object : View
Products Affected
No product.
CWE
CWE-863
Incorrect Authorization