Skip to main content
News Directory 3
  • Business
  • Entertainment
  • Health
  • News
  • Sports
  • Tech
  • World
Menu
  • Business
  • Entertainment
  • Health
  • News
  • Sports
  • Tech
  • World
Passwordstate Vulnerability: Critical Patch Now Available - News Directory 3

Passwordstate Vulnerability: Critical Patch Now Available

August 28, 2025 Lisa Park Tech
News Context
At a glance
  • Click Studios, the ⁣Australia-based maker of the ⁢enterprise password manager Passwordstate, is ⁣urging its 29,000 customers to ‍instantly install an update addressing a high-severity authentication bypass vulnerability.
  • As of this writing, a Common Vulnerabilities and Exposures (CVE) identifier has not yet been assigned to the vulnerability.
  • According to Click Studios, the vulnerability stems from a flaw in how the Passwordstate Emergency Access page is handled.
Original source: arstechnica.com

Passwordstate Vulnerability Allows⁣ Administrative Access Bypass

Table of Contents

  • Passwordstate Vulnerability Allows⁣ Administrative Access Bypass
    • Critical Authentication Bypass Discovered
    • How the Vulnerability Works
    • Passwordstate’s Role and User Base
    • Patch Availability

Updated as of August 28, 2024, at 20:29:19 UTC.

Critical Authentication Bypass Discovered

Click Studios, the ⁣Australia-based maker of the ⁢enterprise password manager Passwordstate, is ⁣urging its 29,000 customers to ‍instantly install an update addressing a high-severity authentication bypass vulnerability. The flaw allows attackers to⁤ craft a malicious⁢ URL that grants access to the application’s Emergency Access page,potentially leading to full administrative control ⁤of the password ⁣vault.

As of this writing, a Common Vulnerabilities and Exposures (CVE) identifier has not yet been assigned to the vulnerability.

How the Vulnerability Works

According to Click Studios, the vulnerability stems from a flaw in how the Passwordstate Emergency Access page is handled. by ‍using a ⁢specifically designed URL, an attacker can circumvent normal authentication procedures and gain unauthorized access. This access could⁢ then ⁤be leveraged to reach the administrative section of the password manager, compromising all stored credentials.

Passwordstate’s Role and User Base

Passwordstate is designed to ⁤secure privileged credentials for organizations and integrates with Active Directory, the user account management service⁤ for Windows networks. ‍ It also supports features like password resets, event‍ auditing, and remote session logins. The password manager serves approximately 370,000 security professionals.

Patch Availability

Click Studios released build 9972 on Thursday to address this and another vulnerability. The company details the issue as a potential authentication bypass associated with accessing the Emergency Access page.

This⁣ information is based on⁤ reports from click Studios as of August‍ 28, 2024.

Share this:

  • Share on Facebook (Opens in new window) Facebook
  • Share on X (Opens in new window) X

Worth a look

  • Microsoft Commercial Growth and Market Impact
  • iPhone 18 Series: Price Hikes and Latest Leaks Explained

Related

Search:

News Directory 3

News Directory 3 catalogs US newspapers, news services, newsstands and digital news outlets across all 50 states. Browse local publishers by city, state, or topic, and follow current headlines linked back to their original sources.

Quick Links

  • Disclaimer
  • Terms and Conditions
  • About Us
  • Advertising Policy
  • Contact Us
  • Cookie Policy
  • Editorial Guidelines
  • Privacy Policy

Browse by State

  • Alabama
  • Alaska
  • Arizona
  • Arkansas
  • California
  • Colorado

© 2026 News Directory 3. All rights reserved.
For contact, advertising, copyright, issues email: office@newsdirectory3.com