« Back to list

Teampasswordmanager

Teampasswordmanager Team Password Manager: vulnerabilities and CVEs

Teampasswordmanager Team Password Manager has 5 published vulnerabilities, 1 of them in the last 12 months. 1 are rated critical and 0 are listed by CISA as actively exploited.

CVEs5
Last 12 months1
Critical1
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2026-84699Critical (9.3)0.63%—Sep 1, 2026
Team Password Manager before 14.184.308 fails to enforce authentication requirements in the local account password reset flow. Unauthenticated attackers can reset local account passwords and authenticate as those users…
CVE-2025-26091Medium (4.6)0.31%—Mar 4, 2025
A Cross Site Scripting (XSS) vulnerability exists in TeamPasswordManager v12.162.284 and before that could allow a remote attacker to execute arbitrary JavaScript in the web browser of a user, by including a malicious…
CVE-2021-44037High (7.5)0.79%—Nov 19, 2021
Team Password Manager (aka TeamPasswordManager) before 10.135.236 allows password-reset poisoning.
CVE-2021-44036High (8.8)0.43%—Nov 19, 2021
Team Password Manager (aka TeamPasswordManager) before 10.135.236 has a CSRF vulnerability during import.
CVE-2019-19461Medium (5.4)0.54%—Mar 16, 2020
Post-authentication Stored XSS in Team Password Manager through 7.93.204 allows attackers to steal other users' credentials by creating a shared password with HTML code as the title.

🎯 How it gets exploited (ATT&CK techniques)

  1. T1078.001 Default Accounts1
  2. T1190 Exploit Public-Facing Application1

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.