CVE-2020-29392

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
30/11/2020
Last modified:
21/07/2021

Description

The Estil Hill Lock Password Manager Safe app 2.3 for iOS has a *#06#* backdoor password. An attacker with physical access can unlock the password manager without knowing the master password set by the user.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:lock_password_manager_safe_app_project:lock_password_manager_safe_app:2.3:*:*:*:*:iphone_os:*:*