CVE-2023-42571

Abuse of remote unlock in Find My Mobile prior to version 7.3.13.4 allows physical attacker to unlock the device remotely by resetting the Samsung Account password with SMS verification when user lost the device.
Configurations

Configuration 1 (hide)

cpe:2.3:a:samsung:find_my_mobile:*:*:*:*:*:*:*:*

History

11 Dec 2023, 14:50

Type Values Removed Values Added
References () https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=12 - () https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=12 - Vendor Advisory
CVSS v2 : unknown
v3 : 7.6
v2 : unknown
v3 : 6.8
CPE cpe:2.3:a:samsung:find_my_mobile:*:*:*:*:*:*:*:*
First Time Samsung
Samsung find My Mobile
CWE NVD-CWE-noinfo

05 Dec 2023, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-05 03:15

Updated : 2023-12-11 14:50


NVD link : CVE-2023-42571

Mitre link : CVE-2023-42571

CVE.ORG link : CVE-2023-42571


JSON object : View

Products Affected

samsung

  • find_my_mobile