PT-2022-8043 · Mirmay · Mirmay Secure Private Browser/File Manager
Marc Ruef
·
Published
2022-03-28
·
Updated
2022-04-04
·
CVE-2018-25030
CVSS v3.1
3.3
Low
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Mirmay Secure Private Browser and File Manager versions up to 2.5
Description
A race condition in the Auto Lock feature leads to a local authentication bypass. The issue has been publicly disclosed and may be exploited.
Recommendations
For versions up to 2.5, consider disabling the Auto Lock feature to prevent potential exploitation until a fix is available.
Exploit
Fix
Improper Authentication
Race Condition
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mirmay Secure Private Browser/File Manager