Lucene search

K
nvd[email protected]NVD:CVE-2024-34603
HistoryJul 08, 2024 - 7:15 a.m.

CVE-2024-34603

2024-07-0807:15:04
web.nvd.nist.gov
9
improper access control
samsung message
local attackers
location data

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

EPSS

0

Percentile

9.2%

Improper access control in Samsung Message prior to SMR Jul-2024 Release 1 allows local attackers to access location data.

Affected configurations

Nvd
Node
samsungandroidMatch13.0-
OR
samsungandroidMatch13.0smr-apr-2023-r1
OR
samsungandroidMatch13.0smr-apr-2024-r1
OR
samsungandroidMatch13.0smr-aug-2023-r1
OR
samsungandroidMatch13.0smr-dec-2022-r1
OR
samsungandroidMatch13.0smr-dec-2023-r1
OR
samsungandroidMatch13.0smr-feb-2023-r1
OR
samsungandroidMatch13.0smr-feb-2024-r1
OR
samsungandroidMatch13.0smr-jan-2023-r1
OR
samsungandroidMatch13.0smr-jan-2024-r1
OR
samsungandroidMatch13.0smr-jul-2023-r1
OR
samsungandroidMatch13.0smr-jun-2023-r1
OR
samsungandroidMatch13.0smr-jun-2024-r1
OR
samsungandroidMatch13.0smr-mar-2023-r1
OR
samsungandroidMatch13.0smr-mar-2024-r1
OR
samsungandroidMatch13.0smr-may-2023-r1
OR
samsungandroidMatch13.0smr-may-2024-r1
OR
samsungandroidMatch13.0smr-nov-2022-r1
OR
samsungandroidMatch13.0smr-nov-2023-r1
OR
samsungandroidMatch13.0smr-oct-2022-r1
OR
samsungandroidMatch13.0smr-oct-2023-r1
OR
samsungandroidMatch13.0smr-sep-2023-r1
OR
samsungandroidMatch14.0-
OR
samsungandroidMatch14.0smr-apr-2023-r1
OR
samsungandroidMatch14.0smr-apr-2024-r1
OR
samsungandroidMatch14.0smr-aug-2023-r1
OR
samsungandroidMatch14.0smr-dec-2022-r1
OR
samsungandroidMatch14.0smr-dec-2023-r1
OR
samsungandroidMatch14.0smr-feb-2023-r1
OR
samsungandroidMatch14.0smr-jan-2023-r1
OR
samsungandroidMatch14.0smr-jan-2024-r1
OR
samsungandroidMatch14.0smr-jul-2023-r1
OR
samsungandroidMatch14.0smr-jun-2023-r1
OR
samsungandroidMatch14.0smr-jun-2024-r1
OR
samsungandroidMatch14.0smr-mar-2023-r1
OR
samsungandroidMatch14.0smr-mar-2024-r1
OR
samsungandroidMatch14.0smr-may-2023-r1
OR
samsungandroidMatch14.0smr-may-2024-r1
OR
samsungandroidMatch14.0smr-nov-2022-r1
OR
samsungandroidMatch14.0smr-nov-2023-r1
OR
samsungandroidMatch14.0smr-oct-2022-r1
OR
samsungandroidMatch14.0smr-oct-2023-r1
OR
samsungandroidMatch14.0smr-sep-2023-r1
VendorProductVersionCPE
samsungandroid13.0cpe:2.3:o:samsung:android:13.0:-:*:*:*:*:*:*
samsungandroid13.0cpe:2.3:o:samsung:android:13.0:smr-apr-2023-r1:*:*:*:*:*:*
samsungandroid13.0cpe:2.3:o:samsung:android:13.0:smr-apr-2024-r1:*:*:*:*:*:*
samsungandroid13.0cpe:2.3:o:samsung:android:13.0:smr-aug-2023-r1:*:*:*:*:*:*
samsungandroid13.0cpe:2.3:o:samsung:android:13.0:smr-dec-2022-r1:*:*:*:*:*:*
samsungandroid13.0cpe:2.3:o:samsung:android:13.0:smr-dec-2023-r1:*:*:*:*:*:*
samsungandroid13.0cpe:2.3:o:samsung:android:13.0:smr-feb-2023-r1:*:*:*:*:*:*
samsungandroid13.0cpe:2.3:o:samsung:android:13.0:smr-feb-2024-r1:*:*:*:*:*:*
samsungandroid13.0cpe:2.3:o:samsung:android:13.0:smr-jan-2023-r1:*:*:*:*:*:*
samsungandroid13.0cpe:2.3:o:samsung:android:13.0:smr-jan-2024-r1:*:*:*:*:*:*
Rows per page:
1-10 of 431

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

EPSS

0

Percentile

9.2%

Related for NVD:CVE-2024-34603