CVE-2023-42578
MEDIUMSamsung Cloud < 5.2.00.7 - Improper Exception Handling
Title source: ruleDescription
Improper handling of insufficient permissions or privileges vulnerability in Samsung Data Store prior to version 5.2.00.7 allows remote attackers to access location information without permission.
Scores
CVSS v3
6.5
EPSS
0.0027
EPSS Percentile
50.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Classification
CWE
CWE-755
Status
published
Affected Products (1)
samsung/cloud
< 5.2.00.7
Timeline
Published
Dec 05, 2023
Tracked Since
Feb 18, 2026