Abuse of remote unlock in Find My Mobile prior to version 7.3.13.4 allows physical attacker to unlock the device remotely by resetting the Samsung Account password with SMS verification when user lost the device.
CVSS Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HSamsung Find My Mobile
APPSamsung< 7.3.13.4
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Related vulnerabilities
CVE-2022-33707MEDIUM5.3same product
Improper identifier creation logic in Find My Mobile prior to version 7.2.24.12 allows attacker to identify th...
CVE-2022-36878LOW3.3same product
Ujawnienie informacji wrażliwych w Find My Mobile przed wersją 7.2.25.14 pozwala atakującemu z dostępem lokaln...
CVE-2022-30741LOW3.3same product
Podatność ujawniająca poufne informacje w SimChangeAlertManger aplikacji Find My Mobile w wersji wcześniejszej...
CVE-2022-30742LOW3.3same product
Podatność ujawniania poufnych informacji w FmmExtraOperation Find My Mobile przed wersją 7.2.24.12 pozwala lok...
CVE-2025-4632CRITICAL9.8⚠ KEVPL ✓same vendor
Path Traversal w Samsung MagicINFO 9 Server — zapis plików jako SYSTEM