The Password Manager Extension in Abine Blur 7.8.242* before 7.8.2428 allows attackers to bypass the Multi-Factor Authentication and macOS disk-encryption protection mechanisms, and consequently exfiltrate secured data, because the right-click context menu is not secured.
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
Link | Tags |
---|---|
https://addons.mozilla.org/en-US/firefox/addon/donottrackplus/versions/?page=1#version-7.8.2428 | third party advisory |
https://redcoded.com/2018/CVE/ | third party advisory |
http://seclists.org/fulldisclosure/2019/Mar/33 | mailing list |
http://packetstormsecurity.com/files/152139/Abine-Blur-7.8.24x-Authentication-Bypass.html |