CVE-2024-34597

Improper input validation in Samsung Health prior to version 6.27.0.113 allows local attackers to write arbitrary document files to the sandbox of Samsung Health. User interaction is required for triggering this vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:samsung:health:*:*:*:*:*:*:*:*

History

02 Jul 2024, 18:04

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 3.3
First Time Samsung
Samsung health
CPE cpe:2.3:a:samsung:health:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
References () https://security.samsungmobile.com/serviceWeb.smsb?year=2024&month=07 - () https://security.samsungmobile.com/serviceWeb.smsb?year=2024&month=07 - Vendor Advisory

02 Jul 2024, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-02 10:15

Updated : 2024-07-02 18:04


NVD link : CVE-2024-34597

Mitre link : CVE-2024-34597


JSON object : View

Products Affected

samsung

  • health