← All CVEs

CVE-2013-3586

high · 7.6

Samsung Web Viewer for Samsung DVR devices allows remote attackers to bypass authentication via an arbitrary SessionID value in a cookie.

7.6
CVSS
11.2%
EPSS (exploit prob.)
96th
EPSS percentile
2013-08-28
Published

AV:N/AC:H/Au:N/C:C/I:C/A:C

Weaknesses

CWE-287

Affected products

VendorProductAffected versions
samsungsmart_viewerall versions
samsungdvrall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2013-3586