Improper Authorization Vulnerability in Samsung Pass
CVE-2022-36876
1.8LOW
What is CVE-2022-36876?
An improper authorization vulnerability exists in the UPI payment feature of Samsung Pass prior to version 4.0.04.10. This flaw potentially allows physical attackers to bypass authentication measures and gain access to the user's account list. Users of affected versions are advised to update their software promptly to mitigate risks associated with unauthorized access.
Affected Version(s)
Samsung Pass < 4.0.04.10