« Back to list

CVE-2011-1840

Status: ModifiedLow (2.1)—

The MartiniCreations PassmanLite Password Manager application before 1.48 for Android stores the master password and unspecified other account information in cleartext, which allows local users to obtain sensitive information by leveraging shell access.

CVSS

Exploitation probability (EPSS)

EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).

Affected technologies (1)

CWEs

References

Raw JSON (NVD)

Show
{
  "id": "CVE-2011-1840",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 2.1,
          "accessVector": "LOCAL",
          "vectorString": "AV:L/AC:L/Au:N/C:P/I:N/A:N",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "NONE",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "LOW",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 3.9,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2011-05-13T17:05:44.517",
  "references": [
    {
      "url": "http://securityreason.com/securityalert/8250",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/47765",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.simonroses.com/wp-content/uploads/2011/05/SRF-SA-2011-01.txt",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://securityreason.com/securityalert/8250",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/47765",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.simonroses.com/wp-content/uploads/2011/05/SRF-SA-2011-01.txt",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-310"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The MartiniCreations PassmanLite Password Manager application before 1.48 for Android stores the master password and unspecified other account information in cleartext, which allows local users to obtain sensitive information by leveraging shell access."
    },
    {
      "lang": "es",
      "value": "La aplicación MartiniCreations PassmanLite Password Manager antes de v1.48 para las tiendas de Android, almacena en texto plano la contraseña maestra y otra información de la cuenta no especificada, lo que permite a usuarios locales obtener información sensible mediante el aprovechamiento de acceso shell."
    }
  ],
  "lastModified": "2026-06-16T23:30:13.303",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:martinicreations:passmanlite_password_manager:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "533BDDD8-72C3-458F-A40B-828EA6A798C4",
              "versionEndIncluding": "1.47"
            },
            {
              "criteria": "cpe:2.3:a:martinicreations:passmanlite_password_manager:1.42:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A38F2428-4644-4A25-A4E8-E1DB866089B8"
            },
            {
              "criteria": "cpe:2.3:a:martinicreations:passmanlite_password_manager:1.43:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "933ACEE6-A0BF-4956-9815-9C99B64200F1"
            },
            {
              "criteria": "cpe:2.3:a:martinicreations:passmanlite_password_manager:1.44:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "BC47EFF8-CDF9-4550-ABB7-3A6D94C4E4C9"
            },
            {
              "criteria": "cpe:2.3:a:martinicreations:passmanlite_password_manager:1.45:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E847484F-B4E3-4C37-9E20-7713806F3564"
            },
            {
              "criteria": "cpe:2.3:a:martinicreations:passmanlite_password_manager:1.46:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "0C3A2819-F91D-4628-905C-536EEE568311"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:google:android:*:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "8255F035-04C8-4158-B301-82101711939C"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}