CVE-2022-0183

MEDIUM

MIRUPASS - Info Disclosure

Title source: llm
STIX 2.1

Description

Missing encryption of sensitive data vulnerability in 'MIRUPASS' PW10 firmware all versions and 'MIRUPASS' PW20 firmware all versions allows an attacker who can physically access the device to obtain the stored passwords.

Scores

CVSS v3 4.6
EPSS 0.0002
EPSS Percentile 4.1%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-311
Status published
Products (2)
kingjim/mirupass_pw10_firmware
kingjim/mirupass_pw20_firmware
Published Jan 17, 2022
Tracked Since Feb 18, 2026