Vulnerability Details CVE-2022-1955
Session 1.13.0 allows an attacker with physical access to the victim's device to bypass the application's password/pin lock to access user data. This is possible due to lack of adequate security controls to prevent dynamic code manipulation.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 24.5%
CVSS Severity
CVSS v3 Score 4.6
CVSS v2 Score 2.1
Products affected by CVE-2022-1955
-
cpe:2.3:a:opft:session:1.13.0