ZeroHour

CVE-2023-36631

PoC
CVSS 3.1
7.8 high
EPSS
<1%p50
Published
()
Modified
Description

Lack of access control in wfc.exe in Malwarebytes Binisoft Windows Firewall Control 6.9.2.0 allows local unprivileged users to bypass Windows Firewall restrictions via the user interface's rules tab. NOTE: the vendor's perspective is "this is intended behavior as the application can be locked using a password."

Vendors
malwarebytes
Products
binisoft windows firewall control
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.