← All CVEs

CVE-2013-3585

medium · 5

Samsung Web Viewer for Samsung DVR devices stores credentials in cleartext, which allows context-dependent attackers to obtain sensitive information via vectors involving (1) direct access to a file or (2) the user-setup web page.

5
CVSS
23.5%
EPSS (exploit prob.)
98th
EPSS percentile
2013-08-28
Published

AV:N/AC:L/Au:N/C:P/I:N/A:N

Weaknesses

CWE-255

Affected products

VendorProductAffected versions
samsungsmart_viewerall versions
samsungdvrall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2013-3585