First published: Tue Apr 02 2024(Updated: )
Improper verification of intent by broadcast receiver vulnerability in SmartThings prior to version 1.8.13.22 allows local attackers to access testing configuration.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
SmartThings | <1.8.13.22 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-20852 is classified as high due to the potential for local attackers to access sensitive testing configuration.
To fix CVE-2024-20852, users should update Samsung SmartThings to version 1.8.13.22 or later.
Users of Samsung SmartThings prior to version 1.8.13.22 are affected by CVE-2024-20852.
CVE-2024-20852 is an improper verification of intent by broadcast receiver vulnerability.
No, CVE-2024-20852 can only be exploited by local attackers.