VulnerabilityModified
CVE-2006-3675
Password Safe 2.11, 2.16 and 3.0BETA1 does not respect the configuration settings for locking the password database when certain dialogue windows are open, which might allow attackers with physical access to obtain the database contents.
LOW 2.1EPSS 0.45%
Does this matter?
Lower severity and a low EPSS score (0.45%). Track it; it rarely justifies an emergency change on its own.
Description
Password Safe 2.11, 2.16 and 3.0BETA1 does not respect the configuration settings for locking the password database when certain dialogue windows are open, which might allow attackers with physical access to obtain the database contents.
- CVSS 2.0
- 2.1 LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 0.45% probability · 38th percentile
- CISA KEV
- Not listed
- Affected
- counterpane/passwordsafe
- Source
- cve@mitre.org
References
- http://securityreason.com/securityalert/1308
- http://securitytracker.com/id?1016565Exploit
- http://www.securityfocus.com/archive/1/441040/100/0/threaded
- http://www.securityfocus.com/bid/19078Exploit
- http://www.symantec.com/enterprise/research/SYMSA-2006-008.txtExploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27933
- http://securityreason.com/securityalert/1308
- http://securitytracker.com/id?1016565Exploit
- http://www.securityfocus.com/archive/1/441040/100/0/threaded
- http://www.securityfocus.com/bid/19078Exploit
- http://www.symantec.com/enterprise/research/SYMSA-2006-008.txtExploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27933
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.