CVE Vulnerabilities

CVE-2022-39866

Published: Oct 07, 2022 | Modified: Jun 27, 2023
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Improper access control vulnerability in RegisteredEventMediator.kt SmartThings prior to version 1.7.89.0 allows attackers to access sensitive information via implicit broadcast.

Affected Software

Name Vendor Start Version End Version
Smartthings Samsung * 1.7.89.0 (excluding)

References