CVE-2022-36851: Medium severity samsung pass vulnerability
Published Sep 9, 2022
·Updated
Improper access control vulnerability in Samsung pass prior to version 4.0.03.1 allow physical attackers to access data of Samsung pass on a certain state of an unlocked device.
Affected Software
1 affected component
Samsung Samsung Pass Android<4.0.03.1
Event History
Sep 9, 2022
CVE Published
via MITRE·02:40 PM
Data Sourced
via MITRE·02:40 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-36851?
CVE-2022-36851 has a high severity due to the potential for unauthorized access to sensitive data on unlocked devices.
2
How do I fix CVE-2022-36851?
To fix CVE-2022-36851, update Samsung Pass to version 4.0.03.1 or later.
3
What does CVE-2022-36851 affect?
CVE-2022-36851 affects Samsung Pass prior to version 4.0.03.1 on Android devices.
4
Who can exploit CVE-2022-36851?
Physical attackers can exploit CVE-2022-36851 to access Samsung Pass data on an unlocked device.
5
What is the nature of the vulnerability in CVE-2022-36851?
CVE-2022-36851 is an improper access control vulnerability allowing unauthorized data access.