Improper Auto-Fill Algorithm in Samsung Internet Browser
CVE-2022-30740
4.1MEDIUM
Summary
A vulnerability exists in Samsung Internet prior to version 17.0.1.69, where an improper auto-fill algorithm can be exploited by physical attackers. This flaw permits unauthorized individuals to guess and access stored credit card numbers, potentially leading to financial fraud and data breaches. Users are urged to update their Samsung Internet browser to enhance their security against such attacks.
Affected Version(s)
Samsung Internet < 17.0.1.69
References
CVSS V3.1
Score:
4.1
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved