Vulnerabilities > Logmein

DATE CVE VULNERABILITY TITLE RISK
2020-12-12 CVE-2020-35208 Improper Authentication vulnerability in Logmein Lastpass 4.8.11.2403
An issue was discovered in the LogMein LastPass Password Manager (aka com.lastpass.ilastpass) app 4.8.11.2403 for iOS.
high complexity
logmein CWE-287
5.7
2020-12-12 CVE-2020-35207 Improper Authentication vulnerability in Logmein Lastpass 4.8.11.2403
An issue was discovered in the LogMein LastPass Password Manager (aka com.lastpass.ilastpass) app 4.8.11.2403 for iOS.
high complexity
logmein CWE-287
5.7
2020-01-31 CVE-2013-5114 Improper Authentication vulnerability in Logmein Lastpass
LastPass prior to 2.5.1 allows secure wipe bypass.
local
low complexity
logmein CWE-287
6.6
2020-01-31 CVE-2013-5113 Insufficiently Protected Credentials vulnerability in Logmein Lastpass
LastPass prior to 2.5.1 has an insecure PIN implementation.
1.9
2019-09-16 CVE-2019-16371 Insufficiently Protected Credentials vulnerability in Logmein Lastpass
LogMeIn LastPass before 4.33.0 allows attackers to construct a crafted web site that captures the credentials for a victim's account on a previously visited web site, because do_popupregister can be bypassed via clickjacking.
network
logmein CWE-522
5.8
2018-04-18 CVE-2018-10193 Resource Exhaustion vulnerability in Logmein Lastpass
LogMeIn LastPass through 4.15.0 allows remote attackers to cause a denial of service (browser hang) via an HTML document because the resource consumption of onloadwff.js grows with the number of INPUT elements.
network
low complexity
logmein CWE-400
5.0
2009-08-24 CVE-2008-7053 Resource Management Errors vulnerability in Logmein Ractrl.Dll
LogMeIn Remote Access Utility ActiveX control (RACtrl.dll) allows remote attackers to cause a denial of service (crash) by setting the fgcolor and bgcolor properties to certain long values that trigger memory corruption.
network
logmein CWE-399
critical
9.3