Vulnerabilities
Vulnerable Software
Samsung:  >> Knox  >> 1.0  Security Vulnerabilities
Samsung KNOX 1.0 uses a weak eCryptFS Key generation algorithm, which makes it easier for local users to obtain sensitive information by leveraging knowledge of the TIMA key and a brute-force attack.
CVSS Score
4.7
EPSS Score
0.001
Published
2017-01-27
Samsung KNOX 1.0.0 uses the shared certificate on Android, which allows local users to conduct man-in-the-middle attacks as demonstrated by installing a certificate and running a VPN service.
CVSS Score
5.5
EPSS Score
0.001
Published
2017-01-27
ClipboardDataMgr in Samsung KNOX 1.0.0 and 2.3.0 does not properly check the caller, which allows local users to read KNOX clipboard data via a crafted application.
CVSS Score
5.5
EPSS Score
0.002
Published
2017-01-27


Contact Us

Shodan ® - All rights reserved