CVE-2023-21447
MEDIUMSamsung Cloud < 5.3.0.32 - Improper Access Control
Title source: ruleDescription
Improper access control vulnerabilities in Samsung Cloud prior to version 5.3.0.32 allows local attackers to access information with Samsung Cloud's privilege via implicit intent.
Scores
CVSS v3
4.0
EPSS
0.0015
EPSS Percentile
34.7%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Classification
CWE
CWE-284
CWE-668
Status
published
Affected Products (1)
samsung/cloud
< 5.3.0.32
Timeline
Published
Feb 09, 2023
Tracked Since
Feb 18, 2026