Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-6742

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Samsung Galaxy S9 prior to 1.4.20.2. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of the GameServiceReceiver update mechanism. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-7477.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.192
EPSS Ranking 95.1%
CVSS Severity
CVSS v3 Score 10.0
CVSS v2 Score 7.5
Products affected by CVE-2019-6742


Contact Us

Shodan ® - All rights reserved