CVE-2015-5729
9.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
The Soft Access Point (AP) feature in Samsung Smart TVs X10P, X12, X14H, X14J, and NT14U and Xpress M288OFW printers generate weak WPA2 PSK keys, which makes it easier for remote attackers to obtain sensitive information or bypass authentication via a brute-force attack.
Affected (15)
Products: Samsung: Nt14u Firmware, X14j Firmware, X14h Firmware, X12 Firmware, X10p Firmware, M288ofw Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-nt14uakucb-1008.0 |
| Running on/with | Platform Versions |
|---|---|
Samsung Nt14u Us | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-ms14jakucb-1102.5 |
| Running on/with | Platform Versions |
|---|---|
Samsung X14j Us | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-mst14dcncb-1010.0 |
| Running on/with | Platform Versions |
|---|---|
Samsung X14h Cn | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-mst12akucb-1114.0 |
| Running on/with | Platform Versions |
|---|---|
Samsung X12 Us | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-mst10pibrcb-1104.0 |
| Running on/with | Platform Versions |
|---|---|
Samsung X10p Ibr | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-nt14udeucb-1007.1 |
| Running on/with | Platform Versions |
|---|---|
Samsung Nt14u Eu | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-nt14udcncb-1003.1 |
| Running on/with | Platform Versions |
|---|---|
Samsung Nt14u Cn | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-ms14jdeucb-1018.0 |
| Running on/with | Platform Versions |
|---|---|
Samsung X14j Eu | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-ms14jdcncb-1004.2 |
| Running on/with | Platform Versions |
|---|---|
Samsung X14j Cn | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-mst14akucb-1100.4 |
| Running on/with | Platform Versions |
|---|---|
Samsung X14h Us | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-mst14deucb-1023.0 |
| Running on/with | Platform Versions |
|---|---|
Samsung X14h Eu | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-mst12deucb-1111.4 |
| Running on/with | Platform Versions |
|---|---|
Samsung X12 Eu | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-mst10pauscp-1302.0 |
| Running on/with | Platform Versions |
|---|---|
Samsung X10p Us | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Version t-mst10pdeucb-1210.0 |
| Running on/with | Platform Versions |
|---|---|
Samsung X10p Eu | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Samsung M288ofw | All versions |
References (12)
Source: cve@mitre.org
ExploitTechnical DescriptionThird Party Advisory
Source: cve@mitre.org
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitTechnical DescriptionThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Timeline
No history available yet.