Lucene search

K
nvd[email protected]NVD:CVE-2012-6334
HistoryDec 31, 2012 - 11:50 a.m.

CVE-2012-6334

2012-12-3111:50:28
CWE-264
web.nvd.nist.gov
1

CVSS2

2.9

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:A/AC:M/Au:N/C:N/I:P/A:N

AI Score

6.7

Confidence

Low

EPSS

0.001

Percentile

24.3%

The Track My Mobile feature in the SamsungDive subsystem for Android on Samsung Galaxy devices does not properly implement Location APIs, which allows physically proximate attackers to provide arbitrary location data via a “commonly available simple GPS location spoofer.”

Affected configurations

Nvd
Node
samsungsamsungdiveMatch-
AND
samsunggalaxy_note_2Match-
OR
samsunggalaxy_sMatch-
OR
samsunggalaxy_s2Match-
VendorProductVersionCPE
samsungsamsungdive-cpe:2.3:a:samsung:samsungdive:-:*:*:*:*:*:*:*
samsunggalaxy_note_2-cpe:2.3:h:samsung:galaxy_note_2:-:*:*:*:*:*:*:*
samsunggalaxy_s-cpe:2.3:h:samsung:galaxy_s:-:*:*:*:*:*:*:*
samsunggalaxy_s2-cpe:2.3:h:samsung:galaxy_s2:-:*:*:*:*:*:*:*

CVSS2

2.9

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:A/AC:M/Au:N/C:N/I:P/A:N

AI Score

6.7

Confidence

Low

EPSS

0.001

Percentile

24.3%

Related for NVD:CVE-2012-6334