CVE-2022-36857: Low severity android vulnerability
Published Sep 9, 2022
·Updated
Improper Authorization vulnerability in Photo Editor prior to SMR Sep-2022 Release 1 allows physical attackers to read internal application data.
Affected Software
3 affected components
Google Android=11.0
Samsung Photo Editor<3.0.23.43
Google Android=12.0
Event History
Sep 9, 2022
CVE Published
via MITRE·02:40 PM
Data Sourced
via MITRE·02:40 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-36857?
CVE-2022-36857 is an Improper Authorization vulnerability in Photo Editor prior to SMR Sep-2022 Release 1.
2
How does CVE-2022-36857 affect Android devices?
CVE-2022-36857 affects Android devices running Google Android 11.0 and Samsung Photo Editor up to version 3.0.23.43.
3
What is the severity of CVE-2022-36857?
The severity of CVE-2022-36857 is low, with a severity value of 2.4.
4
How can physical attackers exploit CVE-2022-36857?
Physical attackers can exploit CVE-2022-36857 to read internal application data in Photo Editor.
5
How can I fix CVE-2022-36857?
To fix CVE-2022-36857, update your Samsung Photo Editor app to the latest version available.