Improper access control vulnerability in MyFiles application prior to versions 12.2.09.0 in Android 11, 13.1.03.501 in Android 12 and 14.1.03.0 in Android 13 allows local attacker to get sensitive information of secret mode in Samsung Internet application with specific conditions.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=03 | Vendor Advisory |
https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=03 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
History
21 Nov 2024, 07:42
Type | Values Removed | Values Added |
---|---|---|
References | () https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=03 - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.0 |
23 Mar 2023, 17:42
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:samsung:myfiles:*:*:*:*:*:*:*:* cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 3.3 |
CWE | NVD-CWE-Other | |
References | (MISC) https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=03 - Vendor Advisory |
16 Mar 2023, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-03-16 21:15
Updated : 2024-11-21 07:42
NVD link : CVE-2023-21463
Mitre link : CVE-2023-21463
CVE.ORG link : CVE-2023-21463
JSON object : View
Products Affected
samsung
- myfiles
- android
CWE