CVE-2022-36875: Medium severity samsung galaxy watch plugin vulnerability
Published Sep 9, 2022
·Updated
Improper restriction of broadcasting Intent in SaWebViewRelayActivity of?Waterplugin prior to version 2.2.11.22081151 allows attacker to access the file without permission.
Affected Software
1 affected component
Samsung Galaxy Watch Plugin Android<2.2.11.22081151
Event History
Sep 9, 2022
CVE Published
via MITRE·02:40 PM
Data Sourced
via MITRE·02:40 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-36875?
CVE-2022-36875 is categorized as a high severity vulnerability due to improper restriction of broadcasting Intent, allowing unauthorized access to files.
2
How do I fix CVE-2022-36875?
To fix CVE-2022-36875, update the Samsung Galaxy Watch Plugin to version 2.2.11.22081151 or later.
3
Who is affected by CVE-2022-36875?
CVE-2022-36875 affects users of the Samsung Galaxy Watch Plugin versions prior to 2.2.11.22081151.
4
What type of vulnerability is CVE-2022-36875?
CVE-2022-36875 is an improper access control vulnerability that allows unauthorized access to files.
5
What is the impact of CVE-2022-36875?
The impact of CVE-2022-36875 is that it allows an attacker to access sensitive files without proper permission.