
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2023-24285 affects the Netslide puzzle component in sgt-puzzles software. A crafted save file can trigger a buffer overrun vulnerability in this component (Rapid7 DB).
The vulnerability has been assigned a CVSS score of 4.0 (AV:L/AC:M/Au:N/C:P/I:P/A:P), indicating a local attack vector with medium attack complexity, requiring no authentication, and potentially impacting confidentiality, integrity, and availability partially (Rapid7 DB).
When successfully exploited, the vulnerability can lead to a buffer overrun condition in the Netslide puzzle component, potentially allowing an attacker to manipulate memory and affect the application's behavior (Rapid7 DB).
Users should upgrade to the patched version of sgt-puzzles to address this vulnerability (Rapid7 DB).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."