CVE-2023-30703
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Summary
CVE-2023-30703 is a vulnerability affecting Samsung Members prior to version 14.0.07.1. This issue stems from improper URL validation, enabling attackers to gain unauthorized access to sensitive information. By manipulating URLs, malicious actors can bypass security measures and view data that was intended to remain private. This vulnerability poses a significant risk to users as their personal information could be exposed without their consent. Samsung has since released a patch to address this issue, and users are encouraged to update their apps to maintain their cybersecurity.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Samsung Members
Affected Vendors
- Samsung