7.2
CVSSv2

CVE-2022-27836

Published: 11/04/2022 Updated: 27/04/2022
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Improper access control and path traversal vulnerability in Storage Manager and Storage Manager Service prior to SMR Apr-2022 Release 1 allow local malicious users to access arbitrary system files without a proper permission. The patch adds proper validation logic to prevent arbitrary files access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google android 12.0