Information Exposure Vulnerability in Galaxy Watch Plugin by Samsung
CVE-2022-25823

1.9LOW

Key Information:

Vendor
Samsung
Vendor
CVE Published:
10 March 2022

Summary

A security vulnerability in the Galaxy Watch Plugin allows attackers to access sensitive user information logged by the application. This issue affects versions prior to 2.2.05.220126741, leading to potential unauthorized disclosure of user data. Users are encouraged to update to the latest version to mitigate risks.

Affected Version(s)

Galaxy Watch Plugin - < 2.2.05.220126741

References

CVSS V3.1

Score:
1.9
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.