CVE-2022-23728Incorrect Provision of Specified Functionality in Google Android

Severity
6.1MEDIUMNVD
EPSS
0.0%
top 95.87%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 21
Latest updateJan 22

Description

Attacker can reset the device with AT Command in the process of rebooting the device. The LG ID is LVE-SMP-210011.

CVSS vector

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:HExploitability: 0.9 | Impact: 5.2

Affected Packages1 packages

NVDgoogle/android< 11.0

🔴Vulnerability Details

1
GHSA
GHSA-9523-6vfr-h73w: Attacker can reset the device with AT Command in the process of rebooting the device2022-01-22
CVE-2022-23728 — Google Android vulnerability | cvebase