CVE-2022-25154

Severity CVSS v4.0:
Pending analysis
Type:
CWE-427 Uncontrolled Search Path Element
Publication date:
05/04/2022
Last modified:
13/04/2022

Description

A DLL hijacking vulnerability in Samsung portable SSD T5 PC software before 1.6.9 could allow a local attacker to escalate privileges. (An attacker must already have user privileges on Windows 7, 10, or 11 to exploit this vulnerability.)

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:samsung:t5_firmware:*:*:*:*:*:*:*:* 1.6.9 (excluding)
cpe:2.3:h:samsung:t5:-:*:*:*:*:*:*:*