CVE-2023-30677
CVSS 3.1 Score 4.6 of 10 (medium)
Details
Summary
CVE-2023-30677 is a vulnerability affecting Samsung Pass before version 4.2.03.1. This issue involves improper access control, enabling physical attackers to gain unauthorized access to Samsung Pass data when the device is in an unlocked state. Potential consequences include sensitive information exposure, posing a significant security risk. It is recommended for users to update Samsung Pass to the latest version to mitigate this vulnerability. Physical security measures, such as device locking, should also be employed to add an additional layer of protection.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Samsung
Advisories, Assessments, and Mitigations
Prioritize, Pinpoint, and Act to Prevent Vulnerability Exploits with Recorded Future
- Gain complete coverage of your cyber, third party, and physical attack surface
- Proactively mitigate threats before they turn into costly attacks
- Make fast, effective, data-driven decisions