ID

VAR-202108-2302


TITLE

Arbitrary file download vulnerability exists in samsung WLAN AP

Trust: 0.6

sources: CNVD: CNVD-2021-47156

DESCRIPTION

Samsung (China) Investment Co., Ltd. is the headquarters of Samsung Group in China. As of the end of 2008, 20 of Samsung's more than 30 companies have invested in China, including Samsung Electronics, Samsung SDI, Samsung SDS, and Samsung Electro-Mechanics. Samsung WLAN AP arbitrary file download vulnerability. Attackers can use this vulnerability to read system files.

Trust: 0.6

sources: CNVD: CNVD-2021-47156

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2021-47156

AFFECTED PRODUCTS

vendor:samsung investmentmodel:wlan apscope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2021-47156

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2021-47156
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2021-47156
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:P/I:N/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2021-47156

EXTERNAL IDS

db:CNVDid:CNVD-2021-47156

Trust: 0.6

sources: CNVD: CNVD-2021-47156

SOURCES

db:CNVDid:CNVD-2021-47156

LAST UPDATE DATE

2022-05-04T08:32:53.307000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2021-47156date:2021-07-05T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2021-47156date:2021-08-06T00:00:00