A component in Kaspersky Password Manager could allow an attacker to elevate a process Integrity level from Medium to High.
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Password_manager | Kaspersky | * | 9.0.1 (including) |
Password_manager | Kaspersky | 9.0.2 (including) | 9.0.2 (including) |
Password_manager | Kaspersky | 9.0.2-patch_a (including) | 9.0.2-patch_a (including) |
Password_manager | Kaspersky | 9.0.2-patch_b (including) | 9.0.2-patch_b (including) |
Password_manager | Kaspersky | 9.0.2-patch_c (including) | 9.0.2-patch_c (including) |
Password_manager | Kaspersky | 9.0.2-patch_d (including) | 9.0.2-patch_d (including) |
Password_manager | Kaspersky | 9.0.2-patch_e (including) | 9.0.2-patch_e (including) |
Password_manager | Kaspersky | 9.0.2-patch_f (including) | 9.0.2-patch_f (including) |
Password_manager | Kaspersky | 9.0.2-patch_g (including) | 9.0.2-patch_g (including) |
Password_manager | Kaspersky | 9.0.2-patch_h (including) | 9.0.2-patch_h (including) |
Password_manager | Kaspersky | 9.0.2-patch_i (including) | 9.0.2-patch_i (including) |
Password_manager | Kaspersky | 9.0.2-patch_j (including) | 9.0.2-patch_j (including) |
Password_manager | Kaspersky | 9.0.2-patch_k (including) | 9.0.2-patch_k (including) |
Password_manager | Kaspersky | 9.0.2-patch_l (including) | 9.0.2-patch_l (including) |
Password_manager | Kaspersky | 9.0.2-patch_m (including) | 9.0.2-patch_m (including) |
Password_manager | Kaspersky | 9.0.2-patch_n (including) | 9.0.2-patch_n (including) |
Password_manager | Kaspersky | 9.0.2-patch_o (including) | 9.0.2-patch_o (including) |
Password_manager | Kaspersky | 9.0.2-patch_p (including) | 9.0.2-patch_p (including) |
Password_manager | Kaspersky | 9.0.2-patch_q (including) | 9.0.2-patch_q (including) |