PT-2023-22379 · Unknown · The Call Blocker

Published

2023-05-30

·

Updated

2025-01-13

·

CVE-2023-29727

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions The Call Blocker application version 6.6.3
Description The issue allows unauthorized applications to use exposed components to delete data stored in the database related to user privacy settings, affecting the normal functionality of the application. This can be used to cause an escalation of privilege attack.
Recommendations For The Call Blocker application version 6.6.3, consider restricting access to the exposed components until a patch is available. As a temporary workaround, avoid using the application with sensitive user privacy settings. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Insecure Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2023-29727

Affected Products

The Call Blocker