CVE-2022-28776: High severity samsung galaxy store vulnerability
Published Apr 11, 2022
·Updated
Improper access control vulnerability in Galaxy Store prior to version 4.5.36.4 allows attacker to install applications from Galaxy Store without user interactions.
Affected Software
1 affected component
Samsung Galaxy Store<4.5.36.4
Event History
Apr 11, 2022
CVE Published
via MITRE·07:37 PM
Data Sourced
via MITRE·07:37 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-28776?
CVE-2022-28776 is classified as a high severity vulnerability due to improper access control allowing unauthorized application installations.
2
How do I fix CVE-2022-28776?
To fix CVE-2022-28776, update your Samsung Galaxy Store to version 4.5.36.4 or later.
3
What versions of Galaxy Store are affected by CVE-2022-28776?
CVE-2022-28776 affects all versions of Samsung Galaxy Store prior to 4.5.36.4.
4
What kind of attacks can be executed due to CVE-2022-28776?
An attacker can exploit CVE-2022-28776 to install applications from the Galaxy Store without any user interaction.
5
Is user intervention required for the exploit of CVE-2022-28776?
No, the exploit of CVE-2022-28776 allows installation of applications without user intervention, making it particularly risky.