In GRAU DATA Blocky before 3.1, Blocky-Gui has a Client-Side Enforcement of Server-Side Security vulnerability. An attacker with Windows administrative or debugging privileges can patch a binary in memory or on disk to bypass the password login requirement and gain full access to all functions of the program.
This Cyber News was published on www.tenable.com. Publication date: Wed, 22 Jan 2025 22:56:02 +0000