PT-2020-8229 · Samsung · Samsung Mobile Devices

Published

2020-04-07

·

Updated

2020-04-08

·

CVE-2017-18680

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions: Samsung mobile devices versions 5.0 through 6.0
Description: An issue allows unintended access to user data in external storage due to the lockscreen interface permitting Add User actions.
Recommendations: For versions 5.0 through 6.0, consider restricting access to external storage when the device is locked to minimize the risk of data exposure.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-18680

Affected Products

Samsung Mobile Devices