ZeroHour

CVE-2021-25446

CVSS 3.1
5.3 medium
EPSS
<1%p55
Published
()
Modified
Description

Improper access control vulnerability in SmartThings prior to version 1.7.67.25 allows untrusted applications to cause arbitrary webpage loading in webview.

Vendors
samsung
Products
smartthings firmware
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.