First published: Mon Apr 11 2022(Updated: )
Improper access control vulnerability in Galaxy Store prior to version 4.5.36.4 allows attacker to install applications from Galaxy Store without user interactions.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Galaxy Store | <4.5.36.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-28776 is classified as a high severity vulnerability due to improper access control allowing unauthorized application installations.
To fix CVE-2022-28776, update your Samsung Galaxy Store to version 4.5.36.4 or later.
CVE-2022-28776 affects all versions of Samsung Galaxy Store prior to 4.5.36.4.
An attacker can exploit CVE-2022-28776 to install applications from the Galaxy Store without any user interaction.
No, the exploit of CVE-2022-28776 allows installation of applications without user intervention, making it particularly risky.