CVE-2022-27841

MEDIUM

Samsung Pass < 3.7.07.5 - Improper Exception Handling

Title source: rule

Description

Improper exception handling in Samsung Pass prior to version 3.7.07.5 allows physical attacker to view the screen that is previously running without authentication

Scores

CVSS v3 4.3
EPSS 0.0006
EPSS Percentile 18.9%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Classification

CWE
CWE-755 CWE-703
Status published

Affected Products (1)

samsung/samsung_pass < 3.7.07.5

Timeline

Published Apr 11, 2022
Tracked Since Feb 18, 2026