CVE-2022-39892: Critical severity samsung pass vulnerability
Published Nov 9, 2022
·Updated
Improper access control in Samsung Pass prior to version 4.0.05.1 allows attackers to unauthenticated access via keep open feature.
Affected Software
1 affected component
Samsung Pass<4.0.05.1
Event History
Nov 9, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-39892?
CVE-2022-39892 is a vulnerability in Samsung Pass prior to version 4.0.05.1 that allows attackers to unauthenticated access via the keep open feature.
2
How severe is CVE-2022-39892?
CVE-2022-39892 has a severity rating of 9.8, which is classified as critical.
3
What software is affected by CVE-2022-39892?
Samsung Pass versions up to and excluding 4.0.05.1 are affected by CVE-2022-39892.
4
How can the vulnerability in Samsung Pass be fixed?
To fix the vulnerability in Samsung Pass, update to version 4.0.05.1 or above.
5
What is the CWE classification of CVE-2022-39892?
CVE-2022-39892 is classified under CWE-287, which is the Improper Authentication vulnerability category.