Missing encryption of sensitive data vulnerability in 'MIRUPASS' PW10 firmware all versions and 'MIRUPASS' PW20 firmware all versions allows an attacker who can physically access the device to obtain the stored passwords.
References
Link | Resource |
---|---|
https://jvn.jp/en/jp/JVN19826500/index.html | Third Party Advisory |
https://www.kingjim.co.jp/download/security/#mirupass | Vendor Advisory |
https://jvn.jp/en/jp/JVN19826500/index.html | Third Party Advisory |
https://www.kingjim.co.jp/download/security/#mirupass | Vendor Advisory |
Configurations
History
21 Nov 2024, 06:38
Type | Values Removed | Values Added |
---|---|---|
References | () https://jvn.jp/en/jp/JVN19826500/index.html - Third Party Advisory | |
References | () https://www.kingjim.co.jp/download/security/#mirupass - Vendor Advisory |
Information
Published : 2022-01-17 10:15
Updated : 2024-11-21 06:38
NVD link : CVE-2022-0183
Mitre link : CVE-2022-0183
CVE.ORG link : CVE-2022-0183
JSON object : View
Products Affected
kingjim
- mirupass_pw10
- mirupass_pw20
- mirupass_pw20_firmware
- mirupass_pw10_firmware
CWE
CWE-311
Missing Encryption of Sensitive Data