Improper Session Management in Samsung Health App
CVE-2022-22283
2.8LOW
Summary
An improper session management vulnerability in Samsung Health prior to version 6.20.1.005 prevents users from successfully logging out of the app. This issue may expose users to potential privacy risks as the session remains active even after the logout command is issued. Users should be cautious and consider upgrading to the latest version to mitigate this vulnerability.
Affected Version(s)
Samsung Health - < 6.20.1.005
References
CVSS V3.1
Score:
2.8
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved