CVE Vulnerabilities

CVE-2022-39876

Insertion of Sensitive Information into Log File

Published: Oct 07, 2022 | Modified: Nov 21, 2024
CVSS 3.x
3.3
LOW
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Insertion of Sensitive Information into Log in PushRegIdUpdateClient of SReminder prior to 8.2.01.13 allows attacker to access device IMEI.

Weakness

The product writes sensitive information to a log file.

Affected Software

NameVendorStart VersionEnd Version
ReminderSamsung*8.2.01.13 (excluding)

Potential Mitigations

References