Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-20870


Improper verification of intent by broadcast receiver vulnerability in Galaxy Store prior to version 4.5.71.8 allows local attackers to write arbitrary files with the privilege of Galaxy Store.


Published

2024-05-07T05:15:51.420

Last Modified

2025-07-17T19:59:14.253

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.1 (MEDIUM)

Weaknesses
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application samsung galaxy_store < 4.5.71.8 Yes

References