Samsung
Samsung Pass: vulnerabilidades y CVE
Samsung Pass tiene 10 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE10
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-49405 | Media (4.6) | 0.23% | — | 6 nov 2024 | Improper authentication in Private Info in Samsung Pass in prior to version 4.4.04.7 allows physical attackers to access sensitive information in a specific scenario. |
| CVE-2023-42576 | Media (6.8) | 0.38% | — | 5 dic 2023 | Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid exception handler. |
| CVE-2023-42575 | Media (6.8) | 0.38% | — | 5 dic 2023 | Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid flag setting. |
| CVE-2023-42554 | Media (6.8) | 0.34% | — | 7 nov 2023 | Improper Authentication vulnerabiity in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication. |
| CVE-2023-30677 | Media (4.6) | 0.25% | — | 6 jul 2023 | Improper access control vulnerability in Samsung Pass prior to version 4.2.03.1 allows physical attackers to access data of Samsung Pass on a certain state of an unlocked device. |
| CVE-2023-30676 | Media (4.6) | 0.25% | — | 6 jul 2023 | Improper access control vulnerability in Samsung Pass prior to version 4.2.03.1 allows physical attackers to access data of Samsung Pass. |
| CVE-2023-30675 | Media (5.5) | 0.16% | — | 6 jul 2023 | Improper authentication in Samsung Pass prior to version 4.2.03.1 allows local attacker to access stored account information when Samsung Wallet is not installed. |
| CVE-2022-39911 | Media (6.8) | 0.26% | — | 8 dic 2022 | Improper check or handling of exceptional conditions vulnerability in Samsung Pass prior to version 4.0.06.1 allows attacker to access Samsung Pass. |
| CVE-2022-39910 | Media (4.2) | 0.27% | — | 8 dic 2022 | Improper access control vulnerability in Samsung Pass prior to version 4.0.06.7 allow physical attackers to access data of Samsung Pass on a certain state of an unlocked device using pop-up view. |
| CVE-2022-39892 | Crítica (9.8) | 0.43% | — | 9 nov 2022 | Improper access control in Samsung Pass prior to version 4.0.05.1 allows attackers to unauthenticated access via keep open feature. |