A component in Kaspersky Password Manager could allow an attacker to elevate a process Integrity level from Medium to High.
📦
password_manager
Vendor: kaspersky
Actively Exploited
0
CISA KEV List
PoC / Exploits
0
Code Available
Total RCEs
0
Remote Access
Total CVEs
4
Total Indexed
Avg. EPSS
1.24%
Exploit Prob.
Security Vulnerability Index
Page 1 / 1
7.8
CVSS
Severity: HIGH
7.5
CVSS
Password generator feature in Kaspersky Password Manager was not completely cryptographically strong and potentially allowed an attacker to predict generated passwords in some cases. An attacker would need to know some additional information (for example, time of password generation).
Severity: HIGH
7.8
CVSS
Unauthorized code execution from specific DLL and is known as DLL Hijacking attack in Kaspersky Password Manager versions before 8.0.6.538.
Severity: HIGH