CVE-2022-33707
12.07.2022, 14:15
Improper identifier creation logic in Find My Mobile prior to version 7.2.24.12 allows attacker to identify the device.Enginsight
Vendor | Product | Version |
---|---|---|
samsung | find_my_mobile | 𝑥 < 7.2.24.12 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-334 - Small Space of Random ValuesThe number of possible random values is smaller than needed by the product, making it more susceptible to brute force attacks.
- CWE-330 - Use of Insufficiently Random ValuesThe software uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.