9.8
CVSSv3

CVE-2018-16272

Published: 22/01/2020 Updated: 30/01/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The wpa_supplicant system service in Samsung Galaxy Gear series allows an unprivileged process to fully control the Wi-Fi interface, due to the lack of its D-Bus security policy configurations. This affects Tizen-based firmwares including Samsung Galaxy Gear series before build RE2.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

samsung galaxy_gear_firmware

samsung gear_2_firmware

samsung gear_live_firmware

samsung gear_s_firmware

samsung gear_s2_firmware

samsung gear_s3_firmware

samsung gear_sport_firmware

samsung gear_fit_firmware

samsung gear_fit_2_firmware

samsung gear_fit_2_pro_firmware