Vulnerabilities > Samsung > Smartthings > 1.7.73.22

DATE CVE VULNERABILITY TITLE RISK
2022-06-07 CVE-2022-30747 Incorrect Default Permissions vulnerability in Samsung Smartthings 1.7.73.22/1.7.85.12
PendingIntent hijacking vulnerability in Smart Things prior to 1.7.85.25 allows local attackers to access files without permission via implicit Intent.
local
low complexity
samsung CWE-276
5.5
2022-06-07 CVE-2022-30749 Improper Authentication vulnerability in Samsung Smartthings 1.7.73.22/1.7.85.12
Improper access control vulnerability in Smart Things prior to 1.7.85.25 allows local attackers to add arbitrary smart devices by bypassing login activity.
local
low complexity
samsung CWE-287
7.8