CVE-2023-30675: Medium severity samsung pass vulnerability
Published Jul 6, 2023
·Updated
Improper authentication in Samsung Pass prior to version 4.2.03.1 allows local attacker to access stored account information when Samsung Wallet is not installed.
Affected Software
1 affected component
Samsung Pass<4.2.03.1
Event History
Jul 6, 2023
CVE Published
via MITRE·02:51 AM
Data Sourced
via MITRE·02:51 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-30675.
2
What is the severity of CVE-2023-30675?
The severity of CVE-2023-30675 is medium with a CVSS score of 5.5.
3
What is the affected software?
The affected software is Samsung Pass prior to version 4.2.03.1.
4
How can a local attacker exploit CVE-2023-30675?
A local attacker can exploit CVE-2023-30675 by accessing stored account information when Samsung Wallet is not installed.
5
Is there a solution for CVE-2023-30675?
Yes, upgrading to Samsung Pass version 4.2.03.1 or later resolves CVE-2023-30675.