Information Exposure Vulnerability in Galaxy Watch Plugin by Samsung
CVE-2022-25823
1.9LOW
Summary
A security vulnerability in the Galaxy Watch Plugin allows attackers to access sensitive user information logged by the application. This issue affects versions prior to 2.2.05.220126741, leading to potential unauthorized disclosure of user data. Users are encouraged to update to the latest version to mitigate risks.
Affected Version(s)
Galaxy Watch Plugin - < 2.2.05.220126741
References
CVSS V3.1
Score:
1.9
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved