VYPR
Medium severity6.5NVD Advisory· Published Apr 7, 2020· Updated Jun 17, 2026

CVE-2017-18695

CVE-2017-18695

Description

An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.0) software. Attackers (who control a certain subdomain) can discover a user's credentials, during an email account login, via an EAS autodiscover packet. The Samsung ID is SVE-2016-7654 (January 2017).

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

7
  • Google/Android5 versions
    cpe:2.3:o:google:android:4.4:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:o:google:android:4.4:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:5.0:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:5.1:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:6.0:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:7.0:*:*:*:*:*:*:*
  • Samsung/mobile devicesdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.