Improper Auto-Fill Algorithm in Samsung Internet Browser
CVE-2022-30740

4.1MEDIUM

Key Information:

Vendor
Samsung
Vendor
CVE Published:
7 June 2022

Summary

A vulnerability exists in Samsung Internet prior to version 17.0.1.69, where an improper auto-fill algorithm can be exploited by physical attackers. This flaw permits unauthorized individuals to guess and access stored credit card numbers, potentially leading to financial fraud and data breaches. Users are urged to update their Samsung Internet browser to enhance their security against such attacks.

Affected Version(s)

Samsung Internet < 17.0.1.69

References

CVSS V3.1

Score:
4.1
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.