CVE-2024-20854
CVE-2024-20854
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.9EPSS 0.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
02 Apr 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Improper handling of insufficient privileges vulnerability in Samsung Camera prior to versions 12.1.0.31 in Android 12, 13.1.02.07 in Android 13, and 14.0.01.06 in Android 14 allows local attackers to access image data.
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Affected products
Samsung Mobile · Samsung CameraWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →