PT-2022-27741 · Click Studios · Click Studios Passwordstate+1

Constantin Müller

+2

·

Published

2022-12-19

·

Updated

2024-05-17

·

CVE-2022-4611

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Click Studios Passwordstate (affected versions not specified) Click Studios Passwordstate Browser Extension Chrome (affected versions not specified)
Description A problematic vulnerability was found in Click Studios Passwordstate and Passwordstate Browser Extension Chrome, affecting an unknown part. The manipulation leads to hard-coded credentials and can be initiated remotely. The exploit has been disclosed to the public and may be used.
Recommendations To resolve the issue, it is recommended to upgrade the affected component. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Using Hardcoded Credentials

Weakness Enumeration

Related Identifiers

CVE-2022-4611

Affected Products

Click Studios Passwordstate
Passwordstate Browser Extension Chrome