Security Advisory

CVE-2022-28784

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-05-03 19:41:01
Last updated 2024-08-03 06:03:52
Assigner Samsung Mobile
CVSS score 4.0
State PUBLISHED

Description

Path traversal vulnerability in Galaxy Themes prior to SMR May-2022 Release 1 allows attackers to list file names in arbitrary directory as system user. The patch addresses incorrect implementation of file path validation check logic.