Dynamic Receiver Vulnerability in Samsung Members Prior to Version 4.2.005
CVE-2022-30748

4MEDIUM

Key Information:

Vendor
Samsung
Vendor
CVE Published:
7 June 2022

Summary

The unprotected dynamic receiver in Samsung Members, prior to version 4.2.005, allows attackers to initiate arbitrary activities within the application. This presents a security risk by enabling unauthorized actions, potentially leading to exposure of sensitive user data or disruption of app functionality.

Affected Version(s)

Samsung Members < 4.2.00.5

References

CVSS V3.1

Score:
4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.