Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cjr2-g7qm-xq33

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Password generator feature in Kaspersky Password Manager was not completely cryptographically strong and potentially allowed an attacker to predict generated passwords in some cases. An attacker would need to know some additional information (for example, time of password generation).

Password generator feature in Kaspersky Password Manager was not completely cryptographically strong and potentially allowed an attacker to predict generated passwords in some cases. An attacker would need to know some additional information (for example, time of password generation).

EPSS

Процентиль: 50%
0.00265
Низкий

Дефекты

CWE-326

Связанные уязвимости

CVSS3: 7.5
nvd
больше 4 лет назад

Password generator feature in Kaspersky Password Manager was not completely cryptographically strong and potentially allowed an attacker to predict generated passwords in some cases. An attacker would need to know some additional information (for example, time of password generation).

CVSS3: 7.5
fstec
почти 5 лет назад

Уязвимость менеджера паролей Kaspersky Password Manager, связанная с недостаточной стойкостью шифрования, позволяющая нарушителю обходить криптографические механизмы защиты

EPSS

Процентиль: 50%
0.00265
Низкий

Дефекты

CWE-326