Description
Uniqkey Password Manager 1.14 contains a vulnerability because it fails to recognize the difference between domains and sub-domains. The vulnerability means that passwords saved for example.com will be recommended for usersite.example.com. This could lead to successful phishing campaigns and create a sense of false security.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-2606 | Uniqkey Password Manager 1.14 contains a vulnerability because it fails to recognize the difference between domains and sub-domains. The vulnerability means that passwords saved for example.com will be recommended for usersite.example.com. This could lead to successful phishing campaigns and create a sense of false security. |
References
| Link | Providers |
|---|---|
| https://vuldb.com/?id.133069 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T22:32:02.225Z
Reserved: 2019-04-05T00:00:00.000Z
Link: CVE-2019-10884
No data.
Status : Modified
Published: 2019-04-05T17:29:00.290
Modified: 2024-11-21T04:20:02.843
Link: CVE-2019-10884
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD