Vulnerabilities > CVE-2023-21445 - Exposure of Resource to Wrong Sphere vulnerability in Samsung Android 11.0/12.0

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
samsung
CWE-668

Summary

Improper access control vulnerability in MyFiles prior to versions 12.2.09 in Android R(11), 13.1.03.501 in Android S(12) and 14.1.00.422 in Android T(13) allows local attacker to write file with MyFiles privilege via implicit intent.

Vulnerable Configurations

Part Description Count
OS
Samsung
78

Common Weakness Enumeration (CWE)