Password generator feature in Kaspersky Password Manager was not completely cryptographically strong and potentially allowed an attacker to predict generated passwords in some cases. An attacker would need to know some additional information (for example, time of password generation).
References
Link | Resource |
---|---|
https://support.kaspersky.com/general/vulnerability.aspx?el=12430#270421 | Broken Link |
https://support.kaspersky.com/general/vulnerability.aspx?el=12430#270421 | Broken Link |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 05:20
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.kaspersky.com/general/vulnerability.aspx?el=12430#270421 - Broken Link |
Information
Published : 2021-05-14 11:15
Updated : 2024-11-21 05:20
NVD link : CVE-2020-27020
Mitre link : CVE-2020-27020
CVE.ORG link : CVE-2020-27020
JSON object : View
Products Affected
kaspersky
- password_manager
CWE
CWE-326
Inadequate Encryption Strength