4.3

CVE-2013-4764

Samsung Galaxy S3/S4 exposes an unprotected component allowing an unprivileged app to send arbitrary SMS texts to arbitrary destinations without permission.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Samsung ≫ Galaxy S3 Firmware Version 1.0
   Samsung ≫ Galaxy S3 Version -
Samsung ≫ Galaxy S4 Firmware Version 1.4
   Samsung ≫ Galaxy S4 Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.3% 0.209
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.3 0.7 3.6
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
NIST 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:N/I:P/A:N
CWE-276 Incorrect Default Permissions

During installation, installed file permissions are set to allow anyone to modify those files.

http://shouji.360.cn/securityReportlist/CVE-2013-4764.html
Third Party Advisory
https://seclists.org/bugtraq/2013/Jul/107
Third Party Advisory
Mailing List