CVE-2022-28541

Severity
7.8HIGH
EPSS
0.1%
top 69.47%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 11
Latest updateApr 12

Description

Uncontrolled search path element vulnerability in Samsung Update prior to version 3.0.77.0 allows attackers to execute arbitrary code as Samsung Update permission.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:LExploitability: 2.5 | Impact: 3.4

Affected Packages2 packages

NVDsamsung/update< 3.0.77.0
CVEListV5samsung_mobile/samsung_update-3.0.77.0

🔴Vulnerability Details

2
GHSA
GHSA-gj25-c67g-2q9v: Uncontrolled search path element vulnerability in Samsung Update prior to version 32022-04-12
CVEList
CVE-2022-28541: Uncontrolled search path element vulnerability in Samsung Update prior to version 32022-04-11
CVE-2022-28541 (HIGH CVSS 7.8) | Uncontrolled search path element vu | cvebase.io