Information Exposure in Samsung Calendar Products
CVE-2022-33705
3.3LOW
Summary
A security vulnerability in Samsung Calendar prior to version 12.3.05.10000 allows unauthorized individuals to access calendar schedules without needing the READ_CALENDAR permission. This flaw could potentially expose sensitive user schedules to attackers, raising serious privacy and security concerns. Users of affected versions should urgently update to the latest version to mitigate these risks.
Affected Version(s)
Calendar < 12.3.05.10000
References
CVSS V3.1
Score:
3.3
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved