DLL Hijacking Vulnerability in Samsung Kies Software
CVE-2022-27843
6.2MEDIUM
Summary
A DLL hijacking vulnerability has been identified in Samsung Kies software, present in versions before 2.6.4.22014_2. This flaw allows attackers to exploit the software by tricking it into loading a malicious DLL file, which can lead to the execution of arbitrary code. This poses significant risks to the integrity and confidentiality of the systems using this software. Users are advised to update to the latest version to mitigate potential security threats.
Affected Version(s)
Kies - < 2.6.4.22014_2
References
CVSS V3.1
Score:
6.2
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved