← back
CVE-2023-21515

CVE-2023-21515

CVSS 7.5 HIGHEPSS 0.5%CWE-20
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.5EPSS 0.5%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
26 May 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
InstantPlay which included vulnerable script which could execute javascript in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →