CVE-2023-42555: Samsung Easysetup

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

Use of implicit intent for sensitive communication vulnerability in EasySetup prior to version 11.1.13 allows attackers to get the bluetooth address of user device.

Affected products

  • Samsung Easysetup: before 11.1.13 (fixed in 11.1.13)

Published 2023-11-07. Last modified 2026-06-17.