First published: Thu Aug 10 2023(Updated: )
Improper Authorization vulnerability in Samsung Internet prior to version 22.0.0.35 allows physical attacker access downloaded files in Secret Mode without user authentication.
Credit: mobile.security@samsung.com mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Internet | <22.0.0.35 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-30704.
The severity of CVE-2023-30704 is medium with a CVSS score of 4.6.
The affected software is Samsung Internet prior to version 22.0.0.35.
CVE-2023-30704 is an improper authorization vulnerability in Samsung Internet that allows a physical attacker to access downloaded files in Secret Mode without user authentication.
To fix CVE-2023-30704, update Samsung Internet to version 22.0.0.35 or later.