CVE-2024-34610
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Summary
CVE-2024-34610 is a new vulnerability that has been identified in ExtControlDeviceService. This issue involves improper access control, which means that local attackers can exploit this weakness to gain unauthorized access to protected data. Prior to the SMR Aug-2024 Release 1, this vulnerability was not addressed, leaving systems vulnerable to attacks. The consequences of this vulnerability can range from data theft to more significant damage, making it a serious concern for organizations that use ExtControlDeviceService. It is essential that affected organizations apply the necessary updates as soon as possible to mitigate the risk of exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Samsung Android
Affected Vendors
- Samsung