Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-36830


PendingIntent hijacking vulnerability in cancelAlarmManager in Charm by Samsung prior to version 1.2.3 allows local attackers to access files without permission via implicit intent.


Published

2022-08-05T16:15:14.780

Last Modified

2024-11-21T07:13:49.187

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.2 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-927
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System samsung charm_firmware < 1.2.3 Yes
Hardware samsung charm - No

References