CVE-2024-26330

MEDIUM

Kape CyberGhostVPN <8.4.3.12823 - Info Disclosure

Title source: llm

Description

An issue was discovered in Kape CyberGhostVPN 8.4.3.12823 on Windows. After a successful logout, user credentials remain in memory while the process is still open, and can be obtained by dumping the process memory and parsing it.

Scores

CVSS v3 6.5
EPSS 0.0028
EPSS Percentile 51.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Classification

CWE
CWE-522
Status draft

Timeline

Published Jun 11, 2024
Tracked Since Feb 18, 2026