← back
CVE-2022-39909

CVE-2022-39909

CVSS 7.1 HIGHEPSS 0.1%CWE-345
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.1EPSS 0.1%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
08 Dec 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Insufficient verification of data authenticity vulnerability in Samsung Gear IconX PC Manager prior to version 2.1.221019.51 allows local attackers to create arbitrary file using symbolic link.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →