CVE Published: 08/12/2022 |
CVE Updated: 03/08/2024 |
CVE Year: 2022 Source: Samsung Mobile |
Vendor: Samsung Mobile |
Product: Samsung Gear IconX PC Manager Status : PUBLISHED
CVE-2022-39909 Description
Insufficient verification of data authenticity vulnerability in Samsung Gear IconX PC Manager prior to version 2.1.221019.51 allows local attackers to create arbitrary file using symbolic link.
Metrics
CVSS Version: 3.1 |
Base Score: 7.1 HIGH Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H