CVE-2022-39909

Severity CVSS v4.0:
Pending analysis
Type:
CWE-345 Insufficient Verification of Data Authenticity
Publication date:
08/12/2022
Last modified:
12/12/2022

Description

Insufficient verification of data authenticity vulnerability in Samsung Gear IconX PC Manager prior to version 2.1.221019.51 allows local attackers to create arbitrary file using symbolic link.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:samsung:gear_iconx_pc_manager:*:*:*:*:*:*:*:* 2.1.221019.51 (excluding)