The biometric lock in Devolutions Password Hub for iOS before 2021.3.4 allows attackers to access the application because of authentication bypass. An attacker must rapidly make failed biometric authentication attempts.
References
Link | Resource |
---|---|
https://devolutions.net/security/advisories/ | Vendor Advisory |
https://devolutions.net/security/advisories/DEVO-2022-0001 | Vendor Advisory |
https://devolutions.net/security/advisories/ | Vendor Advisory |
https://devolutions.net/security/advisories/DEVO-2022-0001 | Vendor Advisory |
Configurations
History
21 Nov 2024, 06:49
Type | Values Removed | Values Added |
---|---|---|
References | () https://devolutions.net/security/advisories/ - Vendor Advisory | |
References | () https://devolutions.net/security/advisories/DEVO-2022-0001 - Vendor Advisory |
08 Aug 2023, 14:21
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo |
Information
Published : 2022-03-03 03:15
Updated : 2024-11-21 06:49
NVD link : CVE-2022-23849
Mitre link : CVE-2022-23849
CVE.ORG link : CVE-2022-23849
JSON object : View
Products Affected
devolutions
- password_hub
CWE