Back to CVE List

CVE-2026-12068

HIGH SEVERITY

CVSS Score & Metrics

Base Score
7.4 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N

Vulnerability Description

Information disclosure vulnerability in Avira Password Manager when used with Mozilla Firefox may allow a remote attacker operating a cross-origin iframe to obtain credentials autofilled for the parent web page via incorrect autofill field selection.

This issue affects Avira Password Manager when used with Mozilla Firefox on Windows, macOS, and Linux.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-669
Source
NVD
Vendor
Gen Digital
Product
Avira Password Manager

External References

Discussion (0)

Add Comment

No comments yet. Be the first!