Missing encryption of sensitive data vulnerability in 'MIRUPASS' PW10 firmware all versions and 'MIRUPASS' PW20 firmware all versions allows an attacker who can physically access the device to obtain the stored passwords.
References
Link | Resource |
---|---|
https://jvn.jp/en/jp/JVN19826500/index.html | Third Party Advisory |
https://www.kingjim.co.jp/download/security/#mirupass | Vendor Advisory |
Configurations
History
26 Jan 2022, 15:46
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:h:kingjim:mirupass_pw20:-:*:*:*:*:*:*:* cpe:2.3:o:kingjim:mirupass_pw20_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:kingjim:mirupass_pw10_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:kingjim:mirupass_pw10:-:*:*:*:*:*:*:* |
|
References | (MISC) https://jvn.jp/en/jp/JVN19826500/index.html - Third Party Advisory | |
References | (MISC) https://www.kingjim.co.jp/download/security/#mirupass - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : 2.1
v3 : 4.6 |
CWE | CWE-311 |
17 Jan 2022, 10:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-01-17 10:15
Updated : 2024-02-04 22:08
NVD link : CVE-2022-0183
Mitre link : CVE-2022-0183
CVE.ORG link : CVE-2022-0183
JSON object : View
Products Affected
kingjim
- mirupass_pw20_firmware
- mirupass_pw10
- mirupass_pw10_firmware
- mirupass_pw20
CWE
CWE-311
Missing Encryption of Sensitive Data