Improper privilege management vulnerability in API Key used in SmartThings prior to 1.7.73.22 allows an attacker to abuse the API key without limitation.
                
            References
                    | Link | Resource | 
|---|---|
| https://security.samsungmobile.com/serviceWeb.smsb?year=2021&month=11 | Vendor Advisory | 
Configurations
                    History
                    No history.
Information
                Published : 2021-11-05 03:15
Updated : 2021-11-09 15:55
NVD link : CVE-2021-25508
Mitre link : CVE-2021-25508
CVE.ORG link : CVE-2021-25508
JSON object : View
Products Affected
                samsung
- smartthings
CWE
                
                    
                        
                        CWE-269
                        
            Improper Privilege Management
