6.6
CVE-2022-23849
- EPSS 0.25%
- Veröffentlicht 03.03.2022 03:15:07
- Zuletzt bearbeitet 21.11.2024 06:49:21
- Erkennungen
The biometric lock in Devolutions Password Hub for iOS before 2021.3.4 allows attackers to access the application because of authentication bypass. An attacker must rapidly make failed biometric authentication attempts.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Devolutions ≫ Password Hub SwPlatform iphone_os Version < 2021.3.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.25% | 0.167 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 6.6 | 0.7 | 5.9 |
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| NIST | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|
https://devolutions.net/security/advisories/
https://devolutions.net/security/advisories/DEVO-2022-0001