7.8
CVE-2023-30702
- EPSS 0.04%
- Published 10.08.2023 02:15:12
- Last modified 21.11.2024 08:00:43
- Source mobile.security@samsung.com
- Teams watchlist Login
- Open Login
Stack overflow vulnerability in SSHDCPAPP TA prior to "SAMSUNG ELECTONICS, CO, LTD. - System Hardware Update - 7/13/2023" in Windows Update for Galaxy book Go, Galaxy book Go 5G, Galaxy book2 Go and Galaxy book2 Pro 360 allows local attacker to execute arbitrary code.
Data is provided by the National Vulnerability Database (NVD)
Samsung ≫ Galaxy Book Go Firmware Version-
Samsung ≫ Galaxy Book Go 5g Firmware Version-
Samsung ≫ Galaxy Book2 Go Firmware Version-
Samsung ≫ Galaxy Book2 Pro 360 Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.04% | 0.089 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
mobile.security@samsung.com | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.