Security Advisory

CVE-2022-28791

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-05-03 19:43:31
Last updated 2024-08-03 06:03:52
Assigner Samsung Mobile
CVSS score 6.2
State PUBLISHED

Description

Improper input validation vulnerability in InstallAgent in Galaxy Store prior to version 4.5.41.8 allows attacker to overwrite files stored in a specific path. The patch adds proper protection to prevent overwrite to existing files.