CVE-2022-39858

CWE-22Path Traversal3 documents3 sources
Severity
7.8HIGH
EPSS
0.1%
top 79.90%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 7

Description

Path traversal vulnerability in AtBroadcastReceiver in FactoryCamera prior to version 3.5.51 allows attackers to write arbitrary file as FactoryCamera privilege.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:LExploitability: 2.5 | Impact: 4.7

Affected Packages2 packages

NVDsamsung/factorycamera< 3.5.51
CVEListV5samsung_mobile/factorycameraunspecified3.5.51

🔴Vulnerability Details

2
GHSA
GHSA-m8hp-vh5f-j47f: Path traversal vulnerability in AtBroadcastReceiver in FactoryCamera prior to version 32022-10-07
CVEList
CVE-2022-39858: Path traversal vulnerability in AtBroadcastReceiver in FactoryCamera prior to version 32022-10-07
CVE-2022-39858 (HIGH CVSS 7.8) | Path traversal vulnerability in AtB | cvebase.io