CVE-2022-24927Improper Privilege Management in Mobile Samsung Video Player

Severity
9.8CRITICALNVD
CNA4.2
EPSS
0.1%
top 65.16%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 11
Latest updateFeb 12

Description

Improper privilege management vulnerability in Samsung Video Player prior to version 7.3.15.30 allows attackers to execute video files without permission.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

NVDsamsung/video_player< 7.3.15.30
CVEListV5samsung_mobile/samsung_video_player-7.3.15.30

🔴Vulnerability Details

2
GHSA
GHSA-82rf-fx6w-98j9: Improper privilege management vulnerability in Samsung Video Player prior to version 72022-02-12
CVEList
CVE-2022-24927: Improper privilege management vulnerability in Samsung Video Player prior to version 72022-02-11
CVE-2022-24927 — Improper Privilege Management | cvebase