CyberSec.Space Logo
Back to CVE Browser

CVE-2018-16272

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0200%
EPSS Percentile16.00th
PublishedJan 22, 2020
Last ModifiedNov 21, 2024

Vulnerability Description

The wpa_supplicant system service in Samsung Galaxy Gear series allows an unprivileged process to fully control the Wi-Fi interface, due to the lack of its D-Bus security policy configurations. This affects Tizen-based firmwares including Samsung Galaxy Gear series before build RE2.

Affected Platforms (CPE)

πŸ’»
Samsung

Galaxy Gear Firmware

< re2
πŸ’»
Samsung

Gear 2 Firmware

< re2
πŸ’»
Samsung

Gear Live Firmware

< re2
πŸ’»
Samsung

Gear S Firmware

< re2
πŸ’»
Samsung

Gear S2 Firmware

< re2
πŸ’»
Samsung

Gear S3 Firmware

< re2
πŸ’»
Samsung

Gear Sport Firmware

< re2
πŸ’»
Samsung

Gear Fit Firmware

< re2
πŸ’»
Samsung

Gear Fit 2 Firmware

< re2
πŸ’»
Samsung

Gear Fit 2 Pro Firmware

< re2

References & Advisories

Related Vulnerabilities

CVE-2018-16272 Detail & Impact Analysis | CVSS 9.8 (CRITICAL) | Cyber-Sec.Space | Cyber-Sec.Space