cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-23349,https://securityvulnerability.io/vulnerability/CVE-2023-23349,Kaspersky Fixes Security Issue in Password Manager Allowing Credentials Recovery,"A security issue has been identified in Kaspersky Password Manager for Windows that permits a local user to retrieve auto-filled credentials through a memory dump while the KPM extension for Google Chrome is active. To exploit this vulnerability, an attacker can entice a user into interacting with a malicious login form that auto-fills saved credentials from Kaspersky Password Manager. Following this, the attacker must deploy a malware component to extract the specified credentials, which may lead to unauthorized access and compromise of sensitive user information.",Kaspersky,Kaspersky Password Manager For Windows,2.2,LOW,0.0004299999854993075,false,false,false,false,,false,false,2024-03-22T16:15:55.200Z,0 CVE-2021-35052,https://securityvulnerability.io/vulnerability/CVE-2021-35052,,A component in Kaspersky Password Manager could allow an attacker to elevate a process Integrity level from Medium to High.,Kaspersky,Kaspersky Password Manager For Windows,7.8,HIGH,0.00044999999227002263,false,false,false,false,,false,false,2021-11-23T15:30:38.000Z,0 CVE-2020-27020,https://securityvulnerability.io/vulnerability/CVE-2020-27020,,"Password generator feature in Kaspersky Password Manager was not completely cryptographically strong and potentially allowed an attacker to predict generated passwords in some cases. An attacker would need to know some additional information (for example, time of password generation).",Kaspersky,"Kaspersky Password Manager For Windows, Kaspersky Password Manager For Android, Kaspersky Password Manager For iOS",7.5,HIGH,0.0018599999602884054,false,false,false,false,,false,false,2021-05-14T11:00:04.000Z,0