{"dataType":"CVE_RECORD","dataVersion":"5.1","cveMetadata":{"state":"PUBLISHED","cveId":"CVE-2023-21462","assignerOrgId":"3af57064-a867-422c-b2ad-40307b65c458","assignerShortName":"Samsung Mobile","dateUpdated":"2024-08-02T09:36:34.479Z","dateReserved":"2022-11-14T00:00:00.000Z","datePublished":"2023-03-16T00:00:00.000Z"},"containers":{"cna":{"providerMetadata":{"orgId":"3af57064-a867-422c-b2ad-40307b65c458","shortName":"Samsung Mobile","dateUpdated":"2023-03-16T00:00:00.000Z"},"descriptions":[{"lang":"en","value":"The sensitive information exposure vulnerability in Quick Share Agent prior to versions 3.5.14.18 in Android 12 and 3.5.16.20 in Android 13 allows to local attacker to access MAC address without related permission."}],"affected":[{"vendor":"Samsung Mobile","product":"Quick Share Agent","versions":[{"version":"unspecified","status":"affected","lessThan":"3.5.14.18 in Android 12 and 3.5.16.20 in Android 13","versionType":"custom"}]}],"references":[{"url":"https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=03"}],"metrics":[{"cvssV3_1":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"HIGH","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE","baseScore":4.2,"baseSeverity":"MEDIUM"}}],"problemTypes":[{"descriptions":[{"type":"CWE","lang":"en","description":"CWE-215: Insertion of Sensitive Information Into Debugging Code","cweId":"CWE-215"}]}],"source":{"discovery":"UNKNOWN"}},"adp":[{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-02T09:36:34.479Z"},"title":"CVE Program Container","references":[{"url":"https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=03","tags":["x_transferred"]}]}]}}