CVE Vulnerabilities

CVE-2023-36631

Published: Jun 26, 2023 | Modified: Nov 21, 2024
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Lack of access control in wfc.exe in Malwarebytes Binisoft Windows Firewall Control 6.9.2.0 allows local unprivileged users to bypass Windows Firewall restrictions via the user interfaces rules tab. NOTE: the vendors perspective is this is intended behavior as the application can be locked using a password.

Affected Software

NameVendorStart VersionEnd Version
Binisoft_windows_firewall_controlMalwarebytes6.9.2.0 (including)6.9.2.0 (including)

References