PT-2020-2636 · Samsung · Samsung Mobile Devices

Published

2020-03-24

·

Updated

2020-08-24

·

CVE-2019-20595

CVSS v3.1

2.4

Low

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Samsung mobile devices with P(9.0) software
Description The issue is related to the quick panel on Samsung mobile devices, which has authentication weaknesses. This can allow an attacker to enable or disable Bluetooth without proper authentication.
Recommendations For Samsung mobile devices with P(9.0) software, consider disabling the quick panel feature until a fix is available to prevent unauthorized access to Bluetooth settings. Restrict access to the Bluetooth stack to minimize the risk of exploitation.

Fix

Improper Authentication

Missing Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-02673
CVE-2019-20595

Affected Products

Samsung Mobile Devices