An issue was discovered in Kape CyberGhostVPN 8.4.3.12823 on Windows. After a successful logout, user credentials remain in memory while the process is still open, and can be obtained by dumping the process memory and parsing it.
References
Configurations
No configuration.
History
21 Nov 2024, 09:02
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.secuvera.de/advisories/secuvera-SA-2024-04.md - | |
References | () https://www.secuvera.de/advisories/secuvera-SA-2024-04.txt - |
01 Nov 2024, 20:35
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-522 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
14 Jun 2024, 20:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
13 Jun 2024, 18:36
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
11 Jun 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-11 17:15
Updated : 2024-11-21 09:02
NVD link : CVE-2024-26330
Mitre link : CVE-2024-26330
CVE.ORG link : CVE-2024-26330
JSON object : View
Products Affected
No product.
CWE
CWE-522
Insufficiently Protected Credentials