cbcvebase.
CVE-2024-34596
published 2024-07-02

CVE-2024-34596: Improper authentication in SmartThings prior to version 1.8.17 allows remote attackers to bypass the expiration date for members set by the owner.

high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
Improper authentication in SmartThings prior to version 1.8.17 allows remote attackers to bypass the expiration date for members set by the owner.

Affected

1 ranges
VendorProductVersion rangeFixed in
samsungsmartthings< 1.8.171.8.17