Описание
The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate passwords, which allows context-dependent attackers to bypass authentication via a brute-force attack.
Ссылки
- Broken Link
- ExploitMailing ListThird Party Advisory
- ExploitMailing ListThird Party Advisory
- Issue TrackingPatchThird Party Advisory
- Mailing ListPatchVendor Advisory
- Broken Link
- ExploitMailing ListThird Party Advisory
- ExploitMailing ListThird Party Advisory
- Issue TrackingPatchThird Party Advisory
- Mailing ListPatchVendor Advisory
Уязвимые конфигурации
EPSS
8.4 High
CVSS3
2.1 Low
CVSS2
Дефекты
Связанные уязвимости
The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate passwords, which allows context-dependent attackers to bypass authentication via a brute-force attack.
The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate passwords, which allows context-dependent attackers to bypass authentication via a brute-force attack.
The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste ...
The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate passwords, which allows context-dependent attackers to bypass authentication via a brute-force attack.
EPSS
8.4 High
CVSS3
2.1 Low
CVSS2