PT-2022-15991 · Sreminder · Reminder

Gabriel Campana

·

Published

2022-02-11

·

Updated

2023-06-27

·

CVE-2022-23433

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Reminder versions prior to 12.3.01.3000 Reminder versions prior to 12.2.05.6000 Reminder versions prior to 11.6.08.6000
Description The issue is related to improper access control in the Reminder application, allowing attackers to register reminders or execute exported activities remotely. This could potentially affect a large number of devices worldwide, although the exact number is not specified.
Recommendations For versions prior to 12.3.01.3000, update to version 12.3.01.3000 or later. For versions prior to 12.2.05.6000, update to version 12.2.05.6000 or later. For versions prior to 11.6.08.6000, update to version 11.6.08.6000 or later.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2022-23433

Affected Products

Reminder