CVE-2022-25829

LOW

Samsung Watch Active2 Plugin - Information Disclosure

Title source: rule
STIX 2.1

Description

Information Exposure vulnerability in Watch Active2 Plugin prior to version 2.2.08.22012751 allows attacker to access password information of connected WiFiAp in the log

References (1)

Core 1
Core References

Scores

CVSS v3 1.9
EPSS 0.0006
EPSS Percentile 18.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N

Details

CWE
CWE-532 CWE-200
Status published
Products (1)
samsung/watch_active2_plugin < 2.2.08.22012751
Published Mar 10, 2022
Tracked Since Feb 18, 2026