The biometric lock in Devolutions Password Hub for iOS before 2021.3.4 allows attackers to access the application because of authentication bypass. An attacker must rapidly make failed biometric authentication attempts.
References
Link | Resource |
---|---|
https://devolutions.net/security/advisories/DEVO-2022-0001 | Vendor Advisory |
https://devolutions.net/security/advisories/ | Vendor Advisory |
Configurations
Information
Published : 2022-03-02 19:15
Updated : 2022-03-10 10:50
NVD link : CVE-2022-23849
Mitre link : CVE-2022-23849
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
devolutions
- password_hub