CVE-2022-36832

MEDIUM

Samsung Cameralyzer < 3.2.22 - Improper Access Control in WebApp

Title source: llm
STIX 2.1

Description

Improper access control vulnerability in WebApp in Cameralyzer prior to versions 3.2.22, 3.3.22, 3.4.22 and 3.5.51 allows attackers to access external storage as Cameralyzer privilege.

References (1)

Core 1
Core References

Scores

CVSS v3 4.0
EPSS 0.0006
EPSS Percentile 19.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Details

CWE
CWE-284
Status published
Products (1)
samsung/cameralyzer < 3.2.22
Published Aug 05, 2022
Tracked Since Feb 18, 2026