CVE-2022-36877
published 2022-09-09CVE-2022-36877: Exposure of Sensitive Information in FaqSymptomCardViewModel in Samsung Members prior to versions 4.3.00.11 in Global and 14.0.02.4 in China allows local…
PriorityP49low3.3CVSS 3.1
AVLACLPRLUINSUCLINAN
EPSS
0.22%
12.7th percentile
Exposure of Sensitive Information in FaqSymptomCardViewModel in Samsung Members prior to versions 4.3.00.11 in Global and 14.0.02.4 in China allows local attackers to access device identification via log.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| samsung | samsung_members | < 4.3.00.11 | 4.3.00.11 |
| samsung | samsung_members | < 14.0.02.4 | 14.0.02.4 |
| samsung_mobile | samsung_members | >= unspecified < 4.3.00.11 in Global and 14.0.02.4 in China | 4.3.00.11 in Global and 14.0.02.4 in China |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-09-09
Published