Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Bitk

#33915of 53,619
7.8Total CVSS
Vulnerabilities · 1
PT-2023-24964
7.8
2023-06-19
Microsoft · Windows 10 · CVE-2023-34642
**Name of the Vulnerable Software and Affected Versions** KioWare for Windows versions through 8.33 **Description** The issue is related to an incomplete blacklist filter for blocked dialog boxes on Windows 10, allowing attackers to open a file dialog box via the `showDirectoryPicker()` function. This can then be used to open an unprivileged command prompt. **Recommendations** For versions through 8.33, consider disabling the `showDirectoryPicker()` function as a temporary workaround until a patch is available. Restrict access to blocked dialog boxes to minimize the risk of exploitation.