CVE Published: 02/07/2024 |
CVE Updated: 02/08/2024 |
CVE Year: 2024 Source: SamsungMobile |
Vendor: Samsung Mobile |
Product: Samsung Health Status : PUBLISHED
CVE-2024-34597 Description
Improper input validation in Samsung Health prior to version 6.27.0.113 allows local attackers to write arbitrary document files to the sandbox of Samsung Health. User interaction is required for triggering this vulnerability.
Metrics
CVSS Version: 3.1 |
Base Score: 4.4 MEDIUM Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L