CVE-2023-42554: Samsung Pass

Medium severity, CVSS 6.8. EPSS: 0.3% chance of exploitation in the next 30 days.

Improper Authentication vulnerabiity in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication.

Affected products

  • Samsung Pass: before 4.3.00.17 (fixed in 4.3.00.17)

Published 2023-11-07. Last modified 2026-06-17.