Arbitrary SessionID Bypass Vulnerability in Samsung Web Viewer for Samsung DVR Devices

Arbitrary SessionID Bypass Vulnerability in Samsung Web Viewer for Samsung DVR Devices

CVE-2013-3586 · HIGH Severity

AV:N/AC:H/AU:N/C:C/I:C/A:C

Samsung Web Viewer for Samsung DVR devices allows remote attackers to bypass authentication via an arbitrary SessionID value in a cookie.

Learn more about our Web App Pen Testing.