CVE Published: 03/12/2024 |
CVE Updated: 03/12/2024 |
CVE Year: 2024 Source: SamsungMobile |
Vendor: Samsung Mobile |
Product: Smart Touch Call Status : PUBLISHED
CVE-2024-49417 Description
Use of implicit intent for sensitive communication in Smart Touch Call prior to 1.0.0.8 allows local attackers to launch privileged activities. User interaction is required for triggering this vulnerability.
Metrics
CVSS Version: 3.1 |
Base Score: 2 LOW Vector: CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:N
l➤ Exploitability Metrics: Attack Vector (AV)* LOCAL Attack Complexity (AC)* LOW Privileges Required (PR)* HIGH User Interaction (UI)* REQUIRED Scope (S)* UNCHANGED