PT-2020-2636 · Samsung · Samsung Mobile Devices
Published
2020-03-24
·
Updated
2020-08-24
·
CVE-2019-20595
CVSS v3.1
2.4
Low
| Vector | AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Samsung mobile devices with P(9.0) software
Description
The issue is related to the quick panel on Samsung mobile devices, which has authentication weaknesses. This can allow an attacker to enable or disable Bluetooth without proper authentication.
Recommendations
For Samsung mobile devices with P(9.0) software, consider disabling the quick panel feature until a fix is available to prevent unauthorized access to Bluetooth settings. Restrict access to the Bluetooth stack to minimize the risk of exploitation.
Fix
Improper Authentication
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Samsung Mobile Devices