Vulnerability Details CVE-2022-28782
Improper access control vulnerability in Contents To Window prior to SMR May-2022 Release 1 allows physical attacker to install package before completion of Setup wizard. The patch blocks entry point of the vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 3.5%
CVSS Severity
CVSS v3 Score 4.6
CVSS v2 Score 2.1
Products affected by CVE-2022-28782
-
cpe:2.3:o:google:android:11.0
-
cpe:2.3:o:google:android:12.0