Aller au contenu

Fiche vulnérabilité

CVE-2023-21516 : faille critique samsung galaxy store (CVSS 9.6)

Description

XSS vulnerability from InstantPlay in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.

En bref

Sévérité
Critique (CVSS 9.6)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
26 mai 2023
Dernière mise à jour
17 juin 2026

Produits concernés

  • samsung galaxy store

Références

Rechercher une autre vulnérabilité dans la base CVE