5.7
CVE-2024-20840
- EPSS 0.04%
- Veröffentlicht 05.03.2024 05:15:12
- Zuletzt bearbeitet 14.02.2025 17:27:27
- Quelle mobile.security@samsung.com
- CVE-Watchlists
- Unerledigt
Improper access control in Samsung Voice Recorder prior to versions 21.5.16.01 in Android 12 and Android 13, 21.4.51.02 in Android 14 allows physical attackers using hardware keyboard to use VoiceRecorder on the lock screen.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Samsung ≫ Voice Recorder Version < 21.5.16.01
Samsung ≫ Voice Recorder Version < 21.4.51.02
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.04% | 0.106 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 2.4 | 0.9 | 1.4 |
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
|
| mobile.security@samsung.com | 5.7 | 0.5 | 5.2 |
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H
|