Описание
Improper input validation in Samsung Members prior to version 5.5.01.3 allows remote attackers to connect arbitrary URL and launch arbitrary activity with Samsung Members privilege. User interaction is required for triggering this vulnerability.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 5.5.01.3 (исключая)
cpe:2.3:a:samsung:members:*:*:*:*:*:*:*:*
EPSS
Процентиль: 23%
0.00078
Низкий
7.1 High
CVSS3
8.1 High
CVSS3
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 7.1
github
3 месяца назад
Improper input validation in Samsung Members prior to version 5.5.01.3 allows remote attackers to connect arbitrary URL and launch arbitrary activity with Samsung Members privilege. User interaction is required for triggering this vulnerability.
EPSS
Процентиль: 23%
0.00078
Низкий
7.1 High
CVSS3
8.1 High
CVSS3
Дефекты
NVD-CWE-noinfo