CVE-2023-42578

MEDIUM

Samsung Cloud < 5.2.00.7 - Improper Exception Handling

Title source: rule

Description

Improper handling of insufficient permissions or privileges vulnerability in Samsung Data Store prior to version 5.2.00.7 allows remote attackers to access location information without permission.

Scores

CVSS v3 6.5
EPSS 0.0027
EPSS Percentile 50.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Classification

CWE
CWE-755
Status published

Affected Products (1)

samsung/cloud < 5.2.00.7

Timeline

Published Dec 05, 2023
Tracked Since Feb 18, 2026