9.8

CVE-2015-5729

Exploit

The Soft Access Point (AP) feature in Samsung Smart TVs X10P, X12, X14H, X14J, and NT14U and Xpress M288OFW printers generate weak WPA2 PSK keys, which makes it easier for remote attackers to obtain sensitive information or bypass authentication via a brute-force attack.

Data is provided by the National Vulnerability Database (NVD)
SamsungNt14u Firmware Versiont-nt14uakucb-1008.0
   SamsungNt14u Us Version-
SamsungX14j Firmware Versiont-ms14jakucb-1102.5
   SamsungX14j Us Version-
SamsungX14h Firmware Versiont-mst14dcncb-1010.0
   SamsungX14h Cn Version-
SamsungX12 Firmware Versiont-mst12akucb-1114.0
   SamsungX12 Us Version-
SamsungX10p Firmware Versiont-mst10pibrcb-1104.0
   SamsungX10p Ibr Version-
SamsungNt14u Firmware Versiont-nt14udeucb-1007.1
   SamsungNt14u Eu Version-
SamsungNt14u Firmware Versiont-nt14udcncb-1003.1
   SamsungNt14u Cn Version-
SamsungX14j Firmware Versiont-ms14jdeucb-1018.0
   SamsungX14j Eu Version-
SamsungX14j Firmware Versiont-ms14jdcncb-1004.2
   SamsungX14j Cn Version-
SamsungX14h Firmware Versiont-mst14akucb-1100.4
   SamsungX14h Us Version-
SamsungX14h Firmware Versiont-mst14deucb-1023.0
   SamsungX14h Eu Version-
SamsungX12 Firmware Versiont-mst12deucb-1111.4
   SamsungX12 Eu Version-
SamsungX10p Firmware Versiont-mst10pauscp-1302.0
   SamsungX10p Us Version-
SamsungX10p Firmware Versiont-mst10pdeucb-1210.0
   SamsungX10p Eu Version-
SamsungM288ofw Firmware Version-
   SamsungM288ofw Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.35% 0.793
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.