CVE-2023-34642
19.06.2023, 05:15
KioWare for Windows through v8.33 was discovered to contain an incomplete blacklist filter for blocked dialog boxes on Windows 10. This issue can allow attackers to open a file dialog box via the function showDirectoryPicker() which can then be used to open an unprivileged command prompt.
Vendor | Product | Version |
---|---|---|
kioware | kioware | 𝑥 ≤ 8.33 |
𝑥
= Vulnerable software versions
References