CVE-2022-25570
21.03.2022, 13:15
In Click Studios (SA) Pty Ltd Passwordstate 9435, users with access to a passwordlist can gain access to additional password lists without permissions. Specifically, an authenticated user who has write permissions to a password list in one folder (with the default permission model) can extend his permissions to all other password lists in the same folder.Enginsight
Vendor | Product | Version |
---|---|---|
clickstudios | passwordstate | 9.4:build_9435 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References