CVE-2022-0725: Infoleak
A flaw was found in keepass. The vulnerability occurs due to logging the plain text passwords in system log and leads to an Information Exposure vulnerability. This flaw allows an attacker to interact and read sensitive passwords and logs.
Other sources
Keepass logs plain text passwords in system log when clearing the clipboard
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this flaw?
The vulnerability ID for this flaw is CVE-2022-0725.
What is the severity of CVE-2022-0725?
The severity of CVE-2022-0725 is high with a CVSS score of 7.5.
How does this vulnerability occur?
This vulnerability occurs due to logging the plain text passwords in the system log.
What is the impact of CVE-2022-0725?
CVE-2022-0725 can lead to an Information Exposure vulnerability, allowing an attacker to interact and read sensitive passwords and logs.
Are there any known references for CVE-2022-0725?
Yes, there are references available at: [Link 1](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=2053688), [Link 2](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=2053691), and [Link 3](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=2053689).