Improper access control vulnerability in Smart Things prior to 1.7.85.25 allows local attackers to add arbitrary smart devices by bypassing login activity.
2022-06-07T19:15:10.977
2024-11-21T07:03:18.290
Modified
CVSSv3.1: 3.3 (LOW)
AV:L/AC:L/Au:N/C:P/I:P/A:P
3.9
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | samsung | smartthings | < 1.7.85.25 | Yes |