CVE-2013-2120

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
11/02/2020
Last modified:
21/02/2020

Description

The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate passwords, which allows context-dependent attackers to bypass authentication via a brute-force attack.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:kde:paste_applet:*:*:*:*:*:*:*:* 4.10.5 (excluding)