Clickstudios

Passwordstate

16 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.28%
  • Veröffentlicht 19.12.2022 11:15:10
  • Zuletzt bearbeitet 21.11.2024 07:20:25

A vulnerability, which was classified as problematic, has been found in Click Studios Passwordstate and Passwordstate Browser Extension Chrome. This issue affects some unknown processing of the file /api/browserextension/UpdatePassword/ of the compon...

Exploit
  • EPSS 0.43%
  • Veröffentlicht 19.12.2022 11:15:10
  • Zuletzt bearbeitet 21.11.2024 07:20:25

A vulnerability, which was classified as problematic, was found in Click Studios Passwordstate and Passwordstate Browser Extension Chrome. Affected is an unknown function of the component URL Field Handler. The manipulation leads to cross site script...

Exploit
  • EPSS 0.21%
  • Veröffentlicht 21.03.2022 13:15:08
  • Zuletzt bearbeitet 21.11.2024 06:52:22

In Click Studios (SA) Pty Ltd Passwordstate 9435, users with access to a passwordlist can gain access to additional password lists without permissions. Specifically, an authenticated user who has write permissions to a password list in one folder (wi...

  • EPSS 0.66%
  • Veröffentlicht 29.10.2020 18:15:12
  • Zuletzt bearbeitet 21.11.2024 05:21:45

An issue was discovered in Click Studios Passwordstate 8.9 (Build 8973).If the user of the system has assigned himself a PIN code for entering from a mobile device using the built-in generator (4 digits), a remote attacker has the opportunity to cond...

Exploit
  • EPSS 6.78%
  • Veröffentlicht 05.10.2020 14:15:13
  • Zuletzt bearbeitet 21.11.2024 05:19:06

ClickStudios Passwordstate Password Reset Portal prior to build 8501 is affected by an authentication bypass vulnerability. The ResetPassword function does not validate whether the user has successfully authenticated using security questions. An unau...

  • EPSS 0.29%
  • Veröffentlicht 01.08.2018 06:29:00
  • Zuletzt bearbeitet 21.11.2024 03:49:46

Click Studios Passwordstate before 8.3 Build 8397 allows XSS by authenticated users via an uploaded HTML document.