CVE-2023-42578: Samsung Cloud

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

Improper handling of insufficient permissions or privileges vulnerability in Samsung Data Store prior to version 5.2.00.7 allows remote attackers to access location information without permission.

Affected products

  • Samsung Cloud: up to and including 5.2.00.7

Published 2023-12-05. Last modified 2026-06-17.