ZeroHour

CVE-2021-25508

CVSS 3.1
9.8 critical
EPSS
<1%p55
Published
()
Modified
Description

Improper privilege management vulnerability in API Key used in SmartThings prior to 1.7.73.22 allows an attacker to abuse the API key without limitation.

Vendors
samsung
Products
smartthings
Weakness
CWE-269
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.