Improper input validation vulnerability in InstallAgent in Galaxy Store prior to version 4.5.41.8 allows attacker to overwrite files stored in a specific path. The patch adds proper protection to prevent overwrite to existing files.
2022-05-03T20:15:09.687
2024-11-21T06:57:56.560
Modified
CVSSv3.1: 6.2 (MEDIUM)
AV:L/AC:L/Au:N/C:N/I:P/A:N
3.9
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | samsung | galaxy_store | < 4.5.41.8 | Yes |