VYPR

privacyIDEA Authenticator

by NetKnights GmbH

CVEs (1)

  • CVE-2025-61482HigOct 27, 2025
    risk 0.47cvss 7.2epss 0.00

    Improper handling of OTP/TOTP/HOTP values in NetKnights GmbH privacyIDEA Authenticator v.4.3.0 on Android allows local attackers with root access to bypass two factor authentication. By hooking into app crypto routines and intercepting decryption paths, attacker can recover…