CVE-2023-30678: Path Traversal
Published Jul 6, 2023
·Updated
Potential zip path traversal vulnerability in Calendar application prior to version 12.4.07.15 in Android 13 allows attackers to write arbitrary file.
Affected Software
2 affected components
Samsung Calendar<12.4.07.15
Google Android=13.0
Event History
Jul 6, 2023
CVE Published
via MITRE·02:51 AM
Data Sourced
via MITRE·02:51 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-30678?
CVE-2023-30678 is categorized as a high-severity vulnerability due to its potential for arbitrary file writing by attackers.
2
How do I fix CVE-2023-30678?
To remediate CVE-2023-30678, update the Samsung Calendar application to version 12.4.07.15 or later.
3
Which versions of the Samsung Calendar application are affected by CVE-2023-30678?
CVE-2023-30678 affects all versions of Samsung Calendar prior to 12.4.07.15.
4
What devices are impacted by CVE-2023-30678?
CVE-2023-30678 impacts devices running the vulnerable version of Samsung Calendar on Android 13.
5
What type of vulnerability is CVE-2023-30678?
CVE-2023-30678 is a zip path traversal vulnerability that allows attackers to write arbitrary files.