Path traversal vulnerability in UriFileUtils of Samsung Notes prior to version 4.3.14.39 allows attacker to access some file as Samsung Notes permission.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/serviceWeb.smsb?year=2022&month=08 | Vendor Advisory |
Configurations
History
27 Oct 2022, 17:21
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://security.samsungmobile.com/serviceWeb.smsb?year=2022&month=08 - Vendor Advisory |
16 Sep 2022, 17:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
14 Sep 2022, 17:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
10 Aug 2022, 16:20
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://security.samsungmobile.com/serviceWeb.smsb?year==2022&month=08 - Vendor Advisory | |
CWE | CWE-22 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
CPE | cpe:2.3:a:samsung:notes:*:*:*:*:*:*:*:* |
05 Aug 2022, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-08-05 16:15
Updated : 2024-02-04 22:51
NVD link : CVE-2022-36831
Mitre link : CVE-2022-36831
CVE.ORG link : CVE-2022-36831
JSON object : View
Products Affected
samsung
- notes
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')