PendingIntent Vulnerability in Samsung Reminder App
CVE-2022-22285
4.4MEDIUM
What is CVE-2022-22285?
A vulnerability exists in the Samsung Reminder application where the PendingIntent can be misused to execute unauthorized actions. This flaw affects versions prior to 12.2.05.0 in Samsung Reminder for Android R (11.0) and prior to 12.3.02.1000 in Android S (12.0). By exploiting this vulnerability, an attacker can hijack the intent to carry out privileged actions, potentially leading to a breach of user privacy and security.
Affected Version(s)
Reminder - < 12.2.05.0 in Android R(11.0) and 12.3.02.1000 in Android S(12.0)