Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fpgh-jxj5-435h

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The SRP-6a implementation in Kee Vault KeePassRPC before 1.12.0 generates insufficiently random numbers, which allows remote attackers to read and modify data in the KeePass database via a WebSocket connection.

The SRP-6a implementation in Kee Vault KeePassRPC before 1.12.0 generates insufficiently random numbers, which allows remote attackers to read and modify data in the KeePass database via a WebSocket connection.

EPSS

Процентиль: 58%
0.00372
Низкий

Связанные уязвимости

CVSS3: 9.1
nvd
больше 5 лет назад

The SRP-6a implementation in Kee Vault KeePassRPC before 1.12.0 generates insufficiently random numbers, which allows remote attackers to read and modify data in the KeePass database via a WebSocket connection.

EPSS

Процентиль: 58%
0.00372
Низкий