Lucene search

K
nvd[email protected]NVD:CVE-2023-21448
HistoryFeb 09, 2023 - 7:15 p.m.

CVE-2023-21448

2023-02-0919:15:16
CWE-22
web.nvd.nist.gov
7
samsung cloud
path traversal
vulnerability
png file access

CVSS3

3.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

EPSS

0

Percentile

10.5%

Path traversal vulnerability in Samsung Cloud prior to version 5.3.0.32 allows attacker to access specific png file.

Affected configurations

Nvd
Node
samsungcloudRange<5.3.0.32
VendorProductVersionCPE
samsungcloud*cpe:2.3:a:samsung:cloud:*:*:*:*:*:*:*:*

CVSS3

3.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

EPSS

0

Percentile

10.5%

Related for NVD:CVE-2023-21448