KeePass 2.45

CPE Details

KeePass 2.45
2.45
2022-03-14
18h11 +00:00
2022-03-15
14h07 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:keepass:keepass:2.45:*:*:*:*:*:*:*

Informations

Vendor

keepass

Product

keepass

Version

2.45

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2023-32784 2023-05-15 00h00 +00:00 In KeePass 2.x before 2.54, it is possible to recover the cleartext master password from a memory dump, even when a workspace is locked or no longer running. The memory dump can be a KeePass process dump, swap file (pagefile.sys), hibernation file (hiberfil.sys), or RAM dump of the entire system. The first character cannot be recovered. In 2.54, there is different API usage and/or random string insertion for mitigation.
7.5
Haute
CVE-2023-24055 2023-01-21 23h00 +00:00 KeePass through 2.53 (in a default installation) allows an attacker, who has write access to the XML configuration file, to obtain the cleartext passwords by adding an export trigger. NOTE: the vendor's position is that the password database is not intended to be secure against an attacker who has that level of access to the local PC.
5.5
Moyen