CVE-2022-25830: Infoleak
Published Mar 8, 2022
·Updated
Information Exposure vulnerability in Galaxy Watch3 Plugin prior to version 2.2.09.22012751 allows attacker to access password information of connected WiFiAp in the log
Affected Software
1 affected component
Samsung Galaxy Watch 3 Plugin Android<2.2.03.22012751
Event History
Mar 8, 2022
CVE Published
via MITRE·01:48 PM
Data Sourced
via MITRE·01:48 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-25830?
CVE-2022-25830 is classified as a low-severity information exposure vulnerability.
2
How do I fix CVE-2022-25830?
To mitigate CVE-2022-25830, update the Galaxy Watch3 Plugin to version 2.2.09.22012751 or later.
3
What information is exposed by CVE-2022-25830?
CVE-2022-25830 allows attackers to access the password information of connected WiFi access points from the logs.
4
Which versions of Galaxy Watch3 Plugin are affected by CVE-2022-25830?
CVE-2022-25830 affects all versions of Galaxy Watch3 Plugin prior to 2.2.09.22012751.
5
Who is affected by CVE-2022-25830?
Users of the Galaxy Watch3 Plugin on Android devices running versions earlier than 2.2.09.22012751 are affected by CVE-2022-25830.