First published: Thu Dec 05 2019(Updated: )
Norton Password Manager, prior to 6.6.2.5, may be susceptible to a cross origin resource sharing (CORS) vulnerability, which is a type of issue that allows restricted resources on a web page to be requested from another domain outside the domain from which the first resource was served.
Credit: secure@symantec.com
Affected Software | Affected Version | How to fix |
---|---|---|
Norton Password Manager | <6.6.2.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-19545 is a vulnerability in Norton Password Manager that may allow cross origin resource sharing (CORS) attacks.
The severity of CVE-2019-19545 is medium, with a CVSS score of 6.3.
CVE-2019-19545 affects Norton Password Manager version up to 6.6.2.5, allowing restricted resources on a web page to be requested from another domain outside the domain from which the first resource was served.
To fix CVE-2019-19545, update Norton Password Manager to version 6.6.2.5 or later.
More information about CVE-2019-19545 can be found at the following reference: [link](https://support.symantec.com/us/en/article.SYMSA1499.html)