CVE-2023-42571

Abuse of remote unlock in Find My Mobile prior to version 7.3.13.4 allows physical attacker to unlock the device remotely by resetting the Samsung Account password with SMS verification when user lost the device.
Configurations

Configuration 1 (hide)

cpe:2.3:a:samsung:find_my_mobile:*:*:*:*:*:*:*:*

History

21 Nov 2024, 08:22

Type Values Removed Values Added
References () https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=12 - Vendor Advisory () https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=12 - Vendor Advisory
CVSS v2 : unknown
v3 : 6.8
v2 : unknown
v3 : 7.6

11 Dec 2023, 14:50

Type Values Removed Values Added
First Time Samsung find My Mobile
Samsung
CWE NVD-CWE-noinfo
CPE cpe:2.3:a:samsung:find_my_mobile:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.8
References () https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=12 - () https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=12 - Vendor Advisory

05 Dec 2023, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-05 03:15

Updated : 2024-11-21 08:22


NVD link : CVE-2023-42571

Mitre link : CVE-2023-42571

CVE.ORG link : CVE-2023-42571


JSON object : View

Products Affected

samsung

  • find_my_mobile