CVE-2013-3586

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
28/08/2013
Last modified:
11/04/2025

Description

Samsung Web Viewer for Samsung DVR devices allows remote attackers to bypass authentication via an arbitrary SessionID value in a cookie.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:samsung:smart_viewer:-:*:*:*:*:*:*:*
cpe:2.3:h:samsung:dvr:-:*:*:*:*:*:*:*