Improper URL validation from MCSLaunch deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute JavaScript API to install APK from Galaxy Store.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: SamsungMobile

Published: 2023-12-05T02:44:38.048Z

Updated: 2024-08-02T19:23:39.771Z

Reserved: 2023-09-11T23:55:08.357Z

Link: CVE-2023-42580

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-12-05T03:15:19.120

Modified: 2023-12-12T17:09:19.990

Link: CVE-2023-42580

cve-icon Redhat

No data.