PT-2024-22248 · Samsung · Samsung Exynos Modem 5300
Published
2024-07-09
·
Updated
2024-10-30
·
CVE-2024-28067
CVSS v3.1
5.3
Medium
| Vector | AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Samsung Exynos Modem 5300 (affected versions not specified)
Description
A Man-in-the-Middle (MITM) attacker can exploit this issue to downgrade the security mode of packets going to the victim, enabling the attacker to send messages to the victim in plaintext.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Improper Certificate Validation
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Samsung Exynos Modem 5300