CVE-2023-49312

CVSS 3.1 Score 9.1 of 10 (high)

Details

Published Nov 26, 2023
Updated: Nov 30, 2023
CWE ID 295

Summary

CVE-2023-49312 is a newly disclosed vulnerability affecting Precision Bridge's PrecisionBridge.exe before version 7.3.21. This issue enables an integrity violation, allowing the same license key to be used concurrently on multiple systems. Hackers can exploit this vulnerability by using techniques such as memory dumping with Process Hacker, inspecting error messages, and manipulating MAC addresses. By doing so, they bypass the licensing restrictions, potentially leading to unauthorized use of the software.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share