5.5

CVE-2022-4610

Exploit
A vulnerability, which was classified as problematic, has been found in Click Studios Passwordstate and Passwordstate Browser Extension Chrome. Affected by this issue is some unknown functionality. The manipulation leads to risky cryptographic algorithm. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-216272.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
ClickstudiosPasswordstate Version < 9.5
ClickstudiosPasswordstate Version9.5 Updatebuild_9500 SwPlatform-
ClickstudiosPasswordstate Version9.5 Updatebuild_9512 SwPlatform-
ClickstudiosPasswordstate Version9.5 Updatebuild_9519 SwPlatform-
ClickstudiosPasswordstate Version9.5 Updatebuild_9531 SwPlatform-
ClickstudiosPasswordstate Version9.5 Updatebuild_9533 SwPlatform-
ClickstudiosPasswordstate Version9.5 Updatebuild_9535 SwPlatform-
ClickstudiosPasswordstate Version9.5 Updatebuild_9583 SwPlatform-
ClickstudiosPasswordstate Version9.5.8.4 SwPlatformchrome
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.07% 0.207
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
cna@vuldb.com 1.9 0.5 1.4
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N
CWE-327 Use of a Broken or Risky Cryptographic Algorithm

The product uses a broken or risky cryptographic algorithm or protocol.