Show filters
24 Total Results
Displaying 11-20 of 24
Sort by:
Attacker Value
Unknown

CVE-2023-21516

Disclosure Date: May 26, 2023 (last updated October 08, 2023)
XSS vulnerability from InstantPlay in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.
Attacker Value
Unknown

CVE-2023-21515

Disclosure Date: May 26, 2023 (last updated October 08, 2023)
InstantPlay which included vulnerable script which could execute javascript in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.
Attacker Value
Unknown

CVE-2023-21514

Disclosure Date: May 26, 2023 (last updated October 08, 2023)
Improper scheme validation from InstantPlay Deeplink in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.
Attacker Value
Unknown

CVE-2023-21434

Disclosure Date: February 09, 2023 (last updated October 08, 2023)
Improper input validation vulnerability in Galaxy Store prior to version 4.5.49.8 allows local attackers to execute JavaScript by launching a web page.
Attacker Value
Unknown

CVE-2023-21433

Disclosure Date: February 09, 2023 (last updated October 08, 2023)
Improper access control vulnerability in Galaxy Store prior to version 4.5.49.8 allows local attackers to install applications from Galaxy Store.
Attacker Value
Unknown

CVE-2022-33710

Disclosure Date: July 12, 2022 (last updated October 07, 2023)
Improper input validation vulnerability in BillingPackageInsraller in Galaxy Store prior to version 4.5.41.8 allows local attackers to launch activities as Galaxy Store privilege.
Attacker Value
Unknown

CVE-2022-33709

Disclosure Date: July 12, 2022 (last updated October 07, 2023)
Improper input validation vulnerability in ApexPackageInstaller in Galaxy Store prior to version 4.5.41.8 allows local attackers to launch activities as Galaxy Store privilege.
Attacker Value
Unknown

CVE-2022-33708

Disclosure Date: July 12, 2022 (last updated October 07, 2023)
Improper input validation vulnerability in AppsPackageInstaller in Galaxy Store prior to version 4.5.41.8 allows local attackers to launch activities as Galaxy Store privilege.
Attacker Value
Unknown

CVE-2022-28791

Disclosure Date: May 03, 2022 (last updated October 07, 2023)
Improper input validation vulnerability in InstallAgent in Galaxy Store prior to version 4.5.41.8 allows attacker to overwrite files stored in a specific path. The patch adds proper protection to prevent overwrite to existing files.
Attacker Value
Unknown

CVE-2022-28776

Disclosure Date: April 11, 2022 (last updated October 07, 2023)
Improper access control vulnerability in Galaxy Store prior to version 4.5.36.4 allows attacker to install applications from Galaxy Store without user interactions.