Mattermost Mobile Apps versions <=2.18.0 fail to disable autocomplete during login while typing the password and visible password is selected, which allows the password to get saved in the dictionary when the user has Swiftkey as the default keyboard, the masking is off and the password contains a special character..
References
Link | Resource |
---|---|
https://mattermost.com/security-updates |
Configurations
No configuration.
History
16 Sep 2024, 15:30
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
16 Sep 2024, 07:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-09-16 07:15
Updated : 2024-09-16 15:30
NVD link : CVE-2024-45833
Mitre link : CVE-2024-45833
CVE.ORG link : CVE-2024-45833
JSON object : View
Products Affected
No product.
CWE
CWE-693
Protection Mechanism Failure