Improper access control vulnerability in Samsung Members prior to version 13.6.08.5 allows local attacker to execute call function without CALL_PHONE permission.
                
            References
                    | Link | Resource | 
|---|---|
| https://security.samsungmobile.com/serviceWeb.smsb?year=2022&month=4 | Vendor Advisory | 
Configurations
                    Information
                Published : 2022-04-11 13:15
Updated : 2022-04-19 05:45
NVD link : CVE-2022-28777
Mitre link : CVE-2022-28777
JSON object : View
CWE
                
                    
                        
                        CWE-863
                        
            Incorrect Authorization
Products Affected
                samsung
- members
 


