CVE-2022-27841
MEDIUMSamsung Pass < 3.7.07.5 - Improper Exception Handling
Title source: ruleDescription
Improper exception handling in Samsung Pass prior to version 3.7.07.5 allows physical attacker to view the screen that is previously running without authentication
Scores
CVSS v3
4.3
EPSS
0.0006
EPSS Percentile
18.9%
Attack Vector
PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Classification
CWE
CWE-755
CWE-703
Status
published
Affected Products (1)
samsung/samsung_pass
< 3.7.07.5
Timeline
Published
Apr 11, 2022
Tracked Since
Feb 18, 2026