cbcvebase.
CVE-2022-22288
published 2022-01-10

CVE-2022-22288: Improper authorization vulnerability in Galaxy Store prior to 4.5.36.5 allows remote app installation of the allowlist.

high7.5CVSS 3.1
AVNACLPRNUINSUCNIHAN
Improper authorization vulnerability in Galaxy Store prior to 4.5.36.5 allows remote app installation of the allowlist.

Affected

2 ranges
VendorProductVersion rangeFixed in
samsunggalaxy_store< 4.5.36.54.5.36.5
samsung_mobilegalaxy_store>= - < 4.5.36.54.5.36.5