CVE-2022-25827: Infoleak
Published Mar 8, 2022
·Updated
Information Exposure vulnerability in Galaxy Watch Plugin prior to version 2.2.05.22012751 allows attacker to access password information of connected WiFiAp in the log
Affected Software
1 affected component
Samsung Galaxy Watch Plugin Android<2.2.05.22012751
Event History
Mar 8, 2022
CVE Published
via MITRE·01:48 PM
Data Sourced
via MITRE·01:48 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-25827?
CVE-2022-25827 has a high severity level due to the potential exposure of sensitive password information.
2
How do I fix CVE-2022-25827?
To fix CVE-2022-25827, update the Samsung Galaxy Watch Plugin to version 2.2.05.22012751 or later.
3
What type of information does CVE-2022-25827 expose?
CVE-2022-25827 exposes the password information of connected WiFi access points stored in logs.
4
What software is affected by CVE-2022-25827?
CVE-2022-25827 affects the Samsung Galaxy Watch Plugin prior to version 2.2.05.22012751.
5
Is there a risk of data theft with CVE-2022-25827?
Yes, there is a risk of data theft with CVE-2022-25827 as attackers can access sensitive password information.