Improper Access Control in Editor Lite by Samsung
CVE-2022-36867

5.9MEDIUM

Key Information:

Vendor
Samsung
Vendor
CVE Published:
9 September 2022

Summary

An improper access control vulnerability has been identified in Editor Lite, allowing unauthorized access to sensitive information. This vulnerability affects versions of the software prior to 4.0.40.14, rendering user data potentially exposed to attackers. It is crucial for users of Editor Lite to update their software to mitigate this risk.

Affected Version(s)

Editor Lite < 4.0.40.14

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.