PT-2024-10292 · Samsung · Smart Switch Pc

Ken Gannon

·

Published

2024-10-23

·

Updated

2025-04-14

·

CVE-2024-49413

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The software that is vulnerable is SmartSwitch, specifically versions prior to the SMR December 2024 Release 1. The vulnerability is related to the improper verification of cryptographic signatures, which allows local attackers to install malicious applications. This vulnerability has been assigned the identifier CVE-2024-49413. There is no information provided about a public exploit for this vulnerability or whether it has been exploited by attackers. The vulnerability can be exploited by local attackers, but there is no information about the number of Internet users that can be affected. The issue is related to the verification process of cryptographic signatures in SmartSwitch, which can be exploited to install malicious applications. #SmartSwitch #CVE202449413 #CryptographicSignature #Vulnerability #Cybersecurity #Infosec #Hacker #NVD #MITRE

Fix

RCE

Improper Verification of Cryptographic Signature

Weakness Enumeration

Related Identifiers

BDU:2025-00707
CVE-2024-49413
ZDI-25-230

Affected Products

Smart Switch Pc