CVE Vulnerabilities

CVE-2022-39893

Insertion of Sensitive Information into Log File

Published: Nov 09, 2022 | Modified: Nov 21, 2024
CVSS 3.x
3.3
LOW
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Sensitive information exposure vulnerability in FmmBaseModel in Galaxy Buds Pro Manage prior to version 4.1.22092751 allows local attackers with log access permission to get device identifier data through device log.

Weakness

The product writes sensitive information to a log file.

Affected Software

Name Vendor Start Version End Version
Galaxy_buds_pro_manage Samsung * 4.1.22092751 (excluding)

Potential Mitigations

References