// For flags

CVE-2022-32550

 

Severity Score

4.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

An issue was discovered in AgileBits 1Password, involving the method various 1Password apps and integrations used to create connections to the 1Password service. In specific circumstances, this issue allowed a malicious server to convince a 1Password app or integration it is communicating with the 1Password service.

Se ha detectado un problema en AgileBits 1Password, que afecta al método que usan varias aplicaciones e integraciones de 1Password para crear conexiones con el servicio de 1Password. En determinadas circunstancias, este problema permitía a un servidor malicioso convencer a una aplicación o integración de 1Password de que estaba comunicándose con el servicio de 1Password

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
Low
Availability
None
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2022-06-08 CVE Reserved
  • 2022-06-15 CVE Published
  • 2024-01-06 EPSS Updated
  • 2024-08-03 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
CAPEC
References (1)
URL Tag Source
URL Date SRC
URL Date SRC
URL Date SRC
https://support.1password.com/kb/202206 2024-03-25
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
1password
Search vendor "1password"
1password
Search vendor "1password" for product "1password"
>= 7.0 < 7.9.3
Search vendor "1password" for product "1password" and version " >= 7.0 < 7.9.3"
android
Affected
1password
Search vendor "1password"
1password
Search vendor "1password" for product "1password"
>= 7.0 < 7.9.5
Search vendor "1password" for product "1password" and version " >= 7.0 < 7.9.5"
macos
Affected
1password
Search vendor "1password"
1password
Search vendor "1password" for product "1password"
>= 7.0 < 7.9.6
Search vendor "1password" for product "1password" and version " >= 7.0 < 7.9.6"
iphone_os
Affected
1password
Search vendor "1password"
1password
Search vendor "1password" for product "1password"
>= 7.0 < 7.9.829
Search vendor "1password" for product "1password" and version " >= 7.0 < 7.9.829"
windows
Affected
1password
Search vendor "1password"
1password
Search vendor "1password" for product "1password"
>= 8.0 < 8.7.1
Search vendor "1password" for product "1password" and version " >= 8.0 < 8.7.1"
linux
Affected
1password
Search vendor "1password"
1password
Search vendor "1password" for product "1password"
>= 8.0 < 8.7.1
Search vendor "1password" for product "1password" and version " >= 8.0 < 8.7.1"
macos
Affected
1password
Search vendor "1password"
1password
Search vendor "1password" for product "1password"
>= 8.0 < 8.7.1
Search vendor "1password" for product "1password" and version " >= 8.0 < 8.7.1"
windows
Affected
1password
Search vendor "1password"
1password
Search vendor "1password" for product "1password"
>= 8.0 < 8.8.0-94
Search vendor "1password" for product "1password" and version " >= 8.0 < 8.8.0-94"
iphone_os
Affected
1password
Search vendor "1password"
1password
Search vendor "1password" for product "1password"
>= 8.0 < 8.8.0-104
Search vendor "1password" for product "1password" and version " >= 8.0 < 8.8.0-104"
android
Affected
1password
Search vendor "1password"
1password In The Browser
Search vendor "1password" for product "1password In The Browser"
< 2.3.4
Search vendor "1password" for product "1password In The Browser" and version " < 2.3.4"
-
Affected
1password
Search vendor "1password"
Command-line
Search vendor "1password" for product "Command-line"
>= 2.0.0 < 2.3.0
Search vendor "1password" for product "Command-line" and version " >= 2.0.0 < 2.3.0"
-
Affected
1password
Search vendor "1password"
Command Line Interface
Search vendor "1password" for product "Command Line Interface"
>= 1.0.0 < 1.12.5
Search vendor "1password" for product "Command Line Interface" and version " >= 1.0.0 < 1.12.5"
-
Affected
1password
Search vendor "1password"
Connect
Search vendor "1password" for product "Connect"
< 1.5.3
Search vendor "1password" for product "Connect" and version " < 1.5.3"
-
Affected
1password
Search vendor "1password"
Scim Bridge
Search vendor "1password" for product "Scim Bridge"
< 2.3.2
Search vendor "1password" for product "Scim Bridge" and version " < 2.3.2"
-
Affected