Pending Intent hijacking vulnerability in NotiCenterUtils in Samsung Pay prior to version 5.0.63 for KR and 5.1.47 for Global allows attackers to access files without permission via implicit Intent.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/serviceWeb.smsb?year=2022&month=09 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2022-09-09 15:15
Updated : 2022-10-01 02:16
NVD link : CVE-2022-36871
Mitre link : CVE-2022-36871
CVE.ORG link : CVE-2022-36871
JSON object : View
Products Affected
samsung
- samsung_pay
- samsung_pay_kr
CWE