CVE Vulnerabilities

CVE-2025-26700

Authentication Bypass Using an Alternate Path or Channel

Published: Feb 17, 2025 | Modified: Feb 17, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Authentication bypass using an alternate path or channel issue exists in ”RoboForm Password Manager App for Android versions prior to 9.7.4, which may allow an attacker with access to a device where the application is installed to bypass the lock screen and obtain sensitive information.

Weakness

The product requires authentication, but the product has an alternate path or channel that does not require authentication.

Potential Mitigations

References