CVE-2023-49312

CRITICAL

Precision Bridge <7.3.21 - Info Disclosure

Title source: llm
STIX 2.1

Description

Precision Bridge PrecisionBridge.exe (aka the thick client) before 7.3.21 allows an integrity violation in which the same license key is used on multiple systems, via vectors involving a Process Hacker memory dump, error message inspection, and modification of a MAC address.

References (2)

Core 2

Scores

CVSS v3 9.1
EPSS 0.0068
EPSS Percentile 47.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Details

CWE
CWE-295
Status published
Products (1)
precisionbridge/precision_bridge < 7.3.21
Published Nov 26, 2023
Tracked Since Feb 18, 2026