CVE-2023-42576: Samsung Pass

Medium severity, CVSS 6.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Improper Authentication vulnerability in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass authentication due to invalid exception handler.

Affected products

  • Samsung Pass: before 4.3.00.17 (fixed in 4.3.00.17)

Published 2023-12-05. Last modified 2026-06-17.