ZeroHour

CVE-2022-39866

CVSS 3.1
7.5 high
EPSS
<1%p30
Published
()
Modified
Description

Improper access control vulnerability in RegisteredEventMediator.kt SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via implicit broadcast.

Vendors
samsung
Products
smartthings
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.