PT-2026-84578 · Unknown · Team Password Manager
CVSS v3.1
9.1
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Team Password Manager versions prior to 14.184.308
Description
An issue exists where the software fails to enforce authentication requirements during the local account password reset flow. This allows unauthenticated attackers to reset local account passwords and authenticate as those users to gain unauthorized access, potentially leading to full account takeover.
Recommendations
Update Team Password Manager to version 14.184.308 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Team Password Manager