CVE-2021-35309 β€” Improper Privilege Management in Samsung Syncthru WEB Service

Severity
7.5HIGHNVD
EPSS
0.1%
top 66.01%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 22

Description

An issue discovered in Samsung SyncThru Web Service SPL 5.93 06-09-2014 allows attackers to gain escalated privileges via MITM attacks.

CVSS vector

CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 1.6 | Impact: 5.9

Affected Packages1 packages

πŸ”΄Vulnerability Details

2
CVEList
CVE-2021-35309: An issue discovered in Samsung SyncThru Web Service SPL 5β†—2023-08-22
β–Ά
GHSA
GHSA-cg26-wmrp-ggr4: An issue discovered in Samsung SyncThru Web Service SPL 5β†—2023-08-22
β–Ά
CVE-2021-35309 β€” Improper Privilege Management | cvebase