CVE-2024-49419
CVE-2024-49419
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4.3EPSS 0.4%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
03 Dec 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Insufficient verification of url authenticity in GamingHub prior to version 6.1.03.4 in Korea, 7.1.02.4 in Global allows remote attackers to load an arbitrary URL in its webview.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Affected products
Samsung Mobile · GamingHubWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →