7.1
CVSSv3

CVE-2022-28783

Published: 03/05/2022 Updated: 11/05/2022
CVSS v2 Base Score: 3.6 | Impact Score: 4.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.1 | Impact Score: 5.2 | Exploitability Score: 1.8
VMScore: 320
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

Improper validation of removing package name in Galaxy Themes prior to SMR May-2022 Release 1 allows malicious users to uninstall arbitrary packages without permission. The patch adds proper validation logic for removing package name.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google android 10.0

google android 11.0

google android 12.0