CVE-2013-3586

Samsung Smart Viewer - Authentication Bypass

Title source: rule

Description

Samsung Web Viewer for Samsung DVR devices allows remote attackers to bypass authentication via an arbitrary SessionID value in a cookie.

Exploits (1)

exploitdb WORKING POC
by Andrea Fabrizi · textwebappshardware
https://www.exploit-db.com/exploits/27753

Scores

EPSS 0.0779
EPSS Percentile 91.8%

Classification

CWE
CWE-287
Status draft

Affected Products (2)

samsung/smart_viewer
samsung/dvr

Timeline

Published Aug 28, 2013
Tracked Since Feb 18, 2026