First published: Wed Nov 06 2024(Updated: )
Improper access control in Samsung Flow prior to version 4.9.15.7 allows physical attackers to access data across multiple user profiles.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Flow | <4.9.15.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-49407 is classified as medium due to its potential for unauthorized data access.
To fix CVE-2024-49407, update Samsung Flow to version 4.9.15.7 or later.
Users of Samsung Flow versions prior to 4.9.15.7 are affected by CVE-2024-49407.
CVE-2024-49407 is an improper access control vulnerability.
CVE-2024-49407 requires physical access for exploitation, making it less of a remote threat.