Information Exposure in Galaxy Watch Plugin by Samsung
CVE-2022-25827
1.9LOW
What is CVE-2022-25827?
The Galaxy Watch Plugin from Samsung contains a vulnerability that allows attackers to gain unauthorized access to sensitive WiFi password information. This exposure occurs through the logging mechanism of the plugin, which fails to adequately protect stored credentials, putting users at risk of unauthorized access to their connected networks. It is crucial for users to update to version 2.2.05.22012751 or later to mitigate potential security threats associated with this flaw.
Affected Version(s)
Galaxy Watch PlugIn - < 2.2.05.22012751