First published: Thu Mar 16 2023(Updated: )
Improper access control vulnerability in MyFiles application prior to versions 12.2.09.0 in Android 11, 13.1.03.501 in Android 12 and 14.1.03.0 in Android 13 allows local attacker to get sensitive information of secret mode in Samsung Internet application with specific conditions.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
samsung MyFiles | <12.2.09.0 | |
Android | =11.0 | |
samsung MyFiles | <13.1.03.501 | |
Android | =12.0 | |
samsung MyFiles | <14.1.03.0 | |
Android | =13.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-21463 is classified as a medium severity vulnerability that may lead to unauthorized access to sensitive information in the MyFiles application.
To fix CVE-2023-21463, users should update the MyFiles application to version 12.2.09.0 or later for Android 11, 13.1.03.501 or later for Android 12, and 14.1.03.0 or later for Android 13.
CVE-2023-21463 affects Samsung MyFiles application versions prior to 12.2.09.0 on Android 11, 13.1.03.501 on Android 12, and 14.1.03.0 on Android 13.
Users of the MyFiles application on affected Android versions are vulnerable to CVE-2023-21463.
CVE-2023-21463 is an improper access control vulnerability that allows local attackers to potentially access sensitive information.