Improper log management vulnerability in Watch Active2 PlugIn prior to 2.2.08.21033151 version allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone via log.
The product logs too much information, making log files hard to process and possibly hindering recovery efforts or forensic analysis after an attack.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Watch_active2_plugin | Samsung | * | 2.2.08.21033151 (excluding) |