PT-2018-5308 · Samsung · Knox Sds Iam/Emm

Samuel Siino

·

Published

2018-02-20

·

Updated

2018-03-18

·

CVE-2017-10963

CVSS v3.1

5.9

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Knox SDS IAM and EMM version 16.11
Description A man-in-the-middle attacker can install any application into the Knox container without the user's knowledge by inspecting network traffic from a Samsung server and injecting content at a certain point in the update sequence. This installed application can further leak information stored inside the Knox container to the outside world.
Recommendations For Knox SDS IAM and EMM version 16.11, consider restricting access to the update sequence to minimize the risk of exploitation. As a temporary workaround, restrict network traffic from Samsung servers to prevent content injection. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Special Elements Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-10963

Affected Products

Knox Sds Iam/Emm