Логотип exploitDog
bind:CVE-2019-11341
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-11341

Количество 2

Количество 2

nvd логотип

CVE-2019-11341

больше 6 лет назад

On certain Samsung P(9.0) phones, an attacker with physical access can start a TCP Dump capture without the user's knowledge. This feature of the Service Mode application is available after entering the *#9900# check code, but is protected by an OTP password. However, this password is created locally and (due to mishandling of cryptography) can be obtained easily by reversing the password creation logic.

CVSS3: 4.6
EPSS: Низкий
github логотип

GHSA-9g95-g4x3-wrvv

больше 3 лет назад

On certain Samsung P(9.0) phones, an attacker with physical access can start a TCP Dump capture without the user's knowledge. This feature of the Service Mode application is available after entering the *#9900# check code, but is protected by an OTP password. However, this password is created locally and (due to mishandling of cryptography) can be obtained easily by reversing the password creation logic.

CVSS3: 4.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-11341

On certain Samsung P(9.0) phones, an attacker with physical access can start a TCP Dump capture without the user's knowledge. This feature of the Service Mode application is available after entering the *#9900# check code, but is protected by an OTP password. However, this password is created locally and (due to mishandling of cryptography) can be obtained easily by reversing the password creation logic.

CVSS3: 4.6
0%
Низкий
больше 6 лет назад
github логотип
GHSA-9g95-g4x3-wrvv

On certain Samsung P(9.0) phones, an attacker with physical access can start a TCP Dump capture without the user's knowledge. This feature of the Service Mode application is available after entering the *#9900# check code, but is protected by an OTP password. However, this password is created locally and (due to mishandling of cryptography) can be obtained easily by reversing the password creation logic.

CVSS3: 4.6
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу