CVE-2022-36833

Published Aug 5, 2022

Last updated 6 months ago

Overview

Description
Improper Privilege Management vulnerability in Game Optimizing Service prior to versions 3.3.04.0 in Android 10, and 3.5.04.8 in Android 11 and above allows local attacker to execute hidden function for developer by changing package name.
Source
mobile.security@samsung.com
NVD status
Modified

Risk scores

CVSS 3.1

Type
Primary
Base score
7.8
Impact score
5.9
Exploitability score
1.8
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

mobile.security@samsung.com
CWE-269
nvd@nist.gov
CWE-269

Social media

Hype score
Not currently trending

Configurations