CVE-2023-21513 MEDIUM

CVE-2023-21513

Vendor Samsung Mobile
Product Samsung Mobile Devices
Weakness CWE-269
Published June 28, 2023
Last update December 5, 2024

CVSS base score

6.1/10
Attack vector Physical
Attack complexity Low
Privileges required None
User interaction None
Confidentiality High
Integrity High

CVSS vector

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

What the vulnerability does

01Description

Improper privilege management vulnerability in CC Mode prior to SMR Jun-2023 Release 1 allows physical attackers to manipulate device to operate in way that results in unexpected behavior in CC Mode under specific condition.

Key dates

02Disclosure timeline

June 28, 2023 CVE published
December 5, 2024 Record updated