Pending Intent hijacking vulnerability in MTransferNotificationManager in Samsung Pay prior to version 5.0.63 for KR and 5.1.47 for Global allows attackers to access files without permission via implicit Intent.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/serviceWeb.smsb?year=2022&month=09 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2022-09-09 08:15
Updated : 2022-09-30 19:18
NVD link : CVE-2022-36870
Mitre link : CVE-2022-36870
JSON object : View
CWE
Products Affected
samsung
- samsung_pay
- samsung_pay_kr