First published: Fri Sep 09 2022(Updated: )
Improper access control vulnerability in Samsung pass prior to version 4.0.03.1 allow physical attackers to access data of Samsung pass on a certain state of an unlocked device.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Samsung Pass | <4.0.03.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-36851 has a high severity due to the potential for unauthorized access to sensitive data on unlocked devices.
To fix CVE-2022-36851, update Samsung Pass to version 4.0.03.1 or later.
CVE-2022-36851 affects Samsung Pass prior to version 4.0.03.1 on Android devices.
Physical attackers can exploit CVE-2022-36851 to access Samsung Pass data on an unlocked device.
CVE-2022-36851 is an improper access control vulnerability allowing unauthorized data access.