CVE-2015-3435: Critical severity samsung security manager vulnerability
Published May 1, 2015
·Updated
Samsung Security Manager (SSM) before 1.31 allows remote attackers to execute arbitrary code by uploading a file with an HTTP (1) PUT or (2) MOVE request.
Affected Software
1 affected component
Samsung Samsung Security Manager<=1.30
Event History
May 1, 2015
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-3435?
CVE-2015-3435 has a high severity rating due to the potential for remote code execution.
2
How do I fix CVE-2015-3435?
To mitigate CVE-2015-3435, update Samsung Security Manager to version 1.31 or later.
3
What types of requests are exploited in CVE-2015-3435?
CVE-2015-3435 can be exploited using HTTP PUT or MOVE requests.
4
What versions of Samsung Security Manager are affected by CVE-2015-3435?
CVE-2015-3435 affects all versions of Samsung Security Manager prior to 1.31.
5
Can CVE-2015-3435 lead to data breaches?
Yes, CVE-2015-3435 can lead to data breaches as it allows attackers to execute arbitrary code remotely.