CVE-2023-32784

HIGH EXPLOITED

Keepass < 2.54 - Cleartext Transmission

Title source: rule

Description

In KeePass 2.x before 2.54, it is possible to recover the cleartext master password from a memory dump, even when a workspace is locked or no longer running. The memory dump can be a KeePass process dump, swap file (pagefile.sys), hibernation file (hiberfil.sys), or RAM dump of the entire system. The first character cannot be recovered. In 2.54, there is different API usage and/or random string insertion for mitigation.

Exploits (14)

nomisec WORKING POC 644 stars
by vdohney · local
https://github.com/vdohney/keepass-password-dumper
nomisec WORKING POC 26 stars
by z-jxy · local
https://github.com/z-jxy/keepass_dump
nomisec WORKING POC 6 stars
by und3sc0n0c1d0 · local
https://github.com/und3sc0n0c1d0/BruteForce-to-KeePass
nomisec WORKING POC 4 stars
by mister-turtle · local
https://github.com/mister-turtle/cve-2023-32784
nomisec WORKING POC 3 stars
by CTM1 · local
https://github.com/CTM1/CVE-2023-32784-keepass-linux
nomisec WORKING POC
by super-oof · local
https://github.com/super-oof/keepass2-password-finder
nomisec WORKING POC
by G4sp4rCS · poc
https://github.com/G4sp4rCS/CVE-2023-32784-password-combinator-fixer
nomisec WRITEUP
by dev0558 · local
https://github.com/dev0558/CVE-2023-32784-EXPLOIT-REPORT
nomisec NO CODE
by Cmadhushanka · poc
https://github.com/Cmadhushanka/CVE-2023-32784-Exploitation
nomisec WORKING POC
by le01s · poc
https://github.com/le01s/poc-CVE-2023-32784
nomisec WORKING POC
by dawnl3ss · local
https://github.com/dawnl3ss/CVE-2023-32784
nomisec WORKING POC
by hau-zy · local
https://github.com/hau-zy/KeePass-dump-py
nomisec WORKING POC
by LeDocteurDesBits · local
https://github.com/LeDocteurDesBits/cve-2023-32784
vulncheck_xdb WORKING POC
local
https://github.com/Orange-Cyberdefense/KeePwn

Scores

CVSS v3 7.5
EPSS 0.7550
EPSS Percentile 98.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

VulnCheck KEV 2024-07-25
CWE
CWE-319
Status published
Products (1)
keepass/keepass 2.00 - 2.54
Published May 15, 2023
Tracked Since Feb 18, 2026