cve/2018/CVE-2018-21078.md
2024-06-09 00:33:16 +00:00

19 lines
856 B
Markdown

### [CVE-2018-21078](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-21078)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.0) software. The Contacts application allows attackers to originate video calls because SS (Supplementary Service) and USSD (Unstructured Supplementary Service Data) codes are improperly secured. The Samsung ID is SVE-2018-11469 (April 2018).
### POC
#### Reference
- https://security.samsungmobile.com/securityUpdate.smsb
- https://security.samsungmobile.com/securityUpdate.smsb
#### Github
No PoCs found on GitHub currently.