Security Advisory

CVE-2019-10884

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-04-05 16:45:27
Last updated 2024-08-04 22:32:02
Assigner mitre
State PUBLISHED

Description

Uniqkey Password Manager 1.14 contains a vulnerability because it fails to recognize the difference between domains and sub-domains. The vulnerability means that passwords saved for example.com will be recommended for usersite.example.com. This could lead to successful phishing campaigns and create a sense of false security.