Remotely Forced Group Join Vulnerability in GroupSharing Prior to Version 13.6.13.3
CVE-2024-34659

5.3MEDIUM

Key Information:

Vendor
Samsung
Vendor
CVE Published:
4 September 2024

Summary

Exposure of sensitive information in GroupSharing prior to version 13.6.13.3 allows remote attackers can force the victim to join the group.

Affected Version(s)

Group Sharing 13.6.13.3

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.