CVE-2020-27020
Summary
| CVE | CVE-2020-27020 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-05-14 11:15:00 UTC |
| Updated | 2021-05-20 23:29:00 UTC |
| Description | Password generator feature in Kaspersky Password Manager was not completely cryptographically strong and potentially allowed an attacker to predict generated passwords in some cases. An attacker would need to know some additional information (for example, time of password generation). |
Risk And Classification
Problem Types: CWE-326
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Kaspersky | Password Manager | All | All | All | All |
| Application | Kaspersky | Password Manager | All | All | All | All |
| Application | Kaspersky | Password Manager | All | All | All | All |
| Application | Kaspersky | Password Manager | 9.2 | - | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| List of Advisories | MISC | support.kaspersky.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.