First published: Fri Feb 11 2022(Updated: )
Improper access control vulnerability in Samsung SearchWidget prior to versions 2.3.00.6 in China models allows untrusted applications to load arbitrary URL and local files in webview.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung SearchWidget | <2.3.00.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-24923 has been classified as a medium severity vulnerability.
To fix CVE-2022-24923, users should update Samsung SearchWidget to version 2.3.00.6 or later.
The risks associated with CVE-2022-24923 include potential unauthorized access to load arbitrary URLs and local files by untrusted applications.
CVE-2022-24923 affects Samsung SearchWidget versions prior to 2.3.00.6 on China models.
Users of Samsung devices utilizing the affected SearchWidget version in China may be impacted by CVE-2022-24923.