CVE-2024-26330
MEDIUMKape CyberGhostVPN <8.4.3.12823 - Info Disclosure
Title source: llmDescription
An issue was discovered in Kape CyberGhostVPN 8.4.3.12823 on Windows. After a successful logout, user credentials remain in memory while the process is still open, and can be obtained by dumping the process memory and parsing it.
Scores
CVSS v3
6.5
EPSS
0.0028
EPSS Percentile
51.1%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Classification
CWE
CWE-522
Status
draft
Timeline
Published
Jun 11, 2024
Tracked Since
Feb 18, 2026