Directory Traversal in Samsung Kies Restores
CVE-2015-8780

6.4MEDIUM

Key Information:

Vendor
Samsung
Status
Vendor
CVE Published:
13 April 2017

Summary

The vulnerability in Samsung's wssyncmlnps component allows for directory traversal during Kies restore operations, permitting unauthorized access to restricted files. This exploits the way the application processes paths, potentially leading to sensitive data exposure.

References

CVSS V3.1

Score:
6.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.