7.8
CVE-2023-30702
- EPSS 0.04%
- Veröffentlicht 10.08.2023 02:15:12
- Zuletzt bearbeitet 21.11.2024 08:00:43
- Quelle mobile.security@samsung.com
- Teams Watchlist Login
- Unerledigt Login
Stack overflow vulnerability in SSHDCPAPP TA prior to "SAMSUNG ELECTONICS, CO, LTD. - System Hardware Update - 7/13/2023" in Windows Update for Galaxy book Go, Galaxy book Go 5G, Galaxy book2 Go and Galaxy book2 Pro 360 allows local attacker to execute arbitrary code.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Samsung ≫ Galaxy Book Go Firmware Version-
Samsung ≫ Galaxy Book Go 5g Firmware Version-
Samsung ≫ Galaxy Book2 Go Firmware Version-
Samsung ≫ Galaxy Book2 Pro 360 Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.04% | 0.089 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
mobile.security@samsung.com | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.