First published: Tue Jun 07 2022(Updated: )
Improper authorization in Samsung Pass prior to 1.0.00.33 allows physical attackers to acess account list without authentication.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Pass | <1.0.00.33 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-30730 is classified as high due to improper authorization vulnerabilities.
To fix CVE-2022-30730, update Samsung Pass to version 1.0.00.33 or higher.
CVE-2022-30730 allows physical attackers to access the account list without proper authentication.
CVE-2022-30730 affects all versions of Samsung Pass prior to 1.0.00.33.
No, CVE-2022-30730 requires physical access to the device to be exploited.