Information Exposure in Samsung Calendar Products
CVE-2022-33705

3.3LOW

Key Information:

Vendor
Samsung
Status
Vendor
CVE Published:
12 July 2022

Summary

A security vulnerability in Samsung Calendar prior to version 12.3.05.10000 allows unauthorized individuals to access calendar schedules without needing the READ_CALENDAR permission. This flaw could potentially expose sensitive user schedules to attackers, raising serious privacy and security concerns. Users of affected versions should urgently update to the latest version to mitigate these risks.

Affected Version(s)

Calendar < 12.3.05.10000

References

CVSS V3.1

Score:
3.3
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.