Samsung Internet Browser <17.0.7.34 Intent Hijack: Arbitrary File Access
CVE-2022-36835 Published on August 5, 2022
Implicit Intent hijacking vulnerability in Samsung Internet Browser prior to version 17.0.7.34 allows attackers to access arbitrary files.
Vulnerability Analysis
CVE-2022-36835 can be exploited with local system access, requires user interaction. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have a small impact on confidentiality, a small impact on integrity and availability.
Weakness Type
What is an Information Disclosure Vulnerability?
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
CVE-2022-36835 has been classified to as an Information Disclosure vulnerability or weakness.
Products Associated with CVE-2022-36835
Want to know whenever a new CVE is published for Samsung Internet Browser? stack.watch will email you.
Affected Versions
Samsung Mobile Samsung Internet Browser:- Version unspecified and below 17.0.7.34 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.