First published: Wed Aug 28 2013(Updated: )
Samsung Web Viewer for Samsung DVR devices allows remote attackers to bypass authentication via an arbitrary SessionID value in a cookie.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Smart Viewer | ||
Samsung DVR |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-3586 is classified as a high severity vulnerability due to its potential for remote exploitation.
To fix CVE-2013-3586, update your Samsung Web Viewer and DVR devices to the latest firmware that addresses this vulnerability.
CVE-2013-3586 affects users of Samsung Smart Viewer and Samsung DVR devices that utilize vulnerable software versions.
CVE-2013-3586 allows attackers to bypass authentication and gain unauthorized access to the device.
Yes, there are known exploits for CVE-2013-3586 that leverage arbitrary SessionID values to compromise devices.