5.3
CVSSv3

CVE-2023-41646

Published: 07/09/2023 Updated: 12/09/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Buttercup v2.20.3 allows malicious users to obtain the hash of the master password for the password manager via accessing the file /vaults.json/

Vulnerable Product Search on Vulmon Subscribe to Product

perrymitchell buttercup 2.20.3

Github Repositories

CVE-2023-41646 Buttercup v2203 Buttercup Password Mangement #Title:Buttercup v2203 #Date: 2023-09-01 #Author: Francisco Marinho #Vendor Homepage: buttercuppw/ #Software link:buttercuppw/ #Version: v2203 #Tested on: Linux =========================POC========================= Buttercup v2203 allows attackers to obtain the hash of the master password fo