In Click Studios (SA) Pty Ltd Passwordstate 9435, users with access to a passwordlist can gain access to additional password lists without permissions. Specifically, an authenticated user who has write permissions to a password list in one folder (with the default permission model) can extend his permissions to all other password lists in the same folder.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-03-21T12:59:25
Updated: 2024-08-03T04:42:50.184Z
Reserved: 2022-02-21T00:00:00
Link: CVE-2022-25570
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2022-03-21T13:15:08.903
Modified: 2022-06-15T21:43:33.657
Link: CVE-2022-25570
Redhat
No data.