CVE-2022-0183
Summary
| CVE | CVE-2022-0183 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-01-17 10:15:00 UTC |
| Updated | 2022-01-26 15:46:00 UTC |
| Description | Missing encryption of sensitive data vulnerability in 'MIRUPASS' PW10 firmware all versions and 'MIRUPASS' PW20 firmware all versions allows an attacker who can physically access the device to obtain the stored passwords. |
Risk And Classification
Problem Types: CWE-311
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Kingjim | Mirupass Pw10 | - | All | All | All |
| Operating System | Kingjim | Mirupass Pw10 Firmware | - | All | All | All |
| Hardware | Kingjim | Mirupass Pw20 | - | All | All | All |
| Operating System | Kingjim | Mirupass Pw20 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| セキュリティ情報のご案内 | ファイルとテプラのキングジム | MISC | www.kingjim.co.jp | |
| JVN#19826500: PASSWORD MANAGER "MIRUPASS" PW10 / PW20 missing encryption | MISC | jvn.jp | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.