cbcvebase.
CVE-2024-20837
published 2024-03-05

CVE-2024-20837: Improper handling of granting permission for Trusted Web Activities in Samsung Internet prior to version 24.0.0.41 allows local attackers to grant permission…

PriorityP422medium5.3CVSS 3.1
AVLACLPRLUINSUCLILAL
EPSS
0.15%
4.4th percentile
Improper handling of granting permission for Trusted Web Activities in Samsung Internet prior to version 24.0.0.41 allows local attackers to grant permission to their own TWA WebApps without user interaction.

Affected

1 ranges
VendorProductVersion rangeFixed in
samsunginternet< 24.0.0.4124.0.0.41
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.