Missing encryption of sensitive data vulnerability in 'MIRUPASS' PW10 firmware all versions and 'MIRUPASS' PW20 firmware all versions allows an attacker who can physically access the device to obtain the stored passwords.
References
Link | Resource |
---|---|
https://www.kingjim.co.jp/download/security/#mirupass | Vendor Advisory |
https://jvn.jp/en/jp/JVN19826500/index.html | Third Party Advisory |
Information
Published : 2022-01-17 02:15
Updated : 2022-01-26 07:46
NVD link : CVE-2022-0183
Mitre link : CVE-2022-0183
JSON object : View
CWE
CWE-311
Missing Encryption of Sensitive Data
Products Affected
kingjim
- mirupass_pw10_firmware
- mirupass_pw20
- mirupass_pw10
- mirupass_pw20_firmware