Samsung Flow Vulnerability Allows Physical Attackers to Access Data Across Multiple User Profiles
CVE-2024-49407
4.6MEDIUM
Summary
Improper access control in Samsung Flow prior to version 4.9.15.7 allows physical attackers to access data across multiple user profiles.
Affected Version(s)
Samsung Flow 4.9.15.7
References
CVSS V3.1
Score:
4.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved