CVE-2022-3611

Published at:
2023-10-27T20:15:08.623

Global infos:

An information disclosure vulnerability has been identified in the Lenovo App Store which may allow some applications to gain unauthorized access to sensitive user data used by other unrelated applications.

CVE Status: Modified

References:

  • [email protected]
  • af854a3a-2127-422b-91ae-364da2661108
  • Metrics:

    AttributeValue
    Attack ComplexityLOW
    Attack VectorADJACENT_NETWORK
    Availability ImpactLOW
    Base Score7.6
    Base SeverityHIGH
    Confidentiality ImpactHIGH
    Integrity ImpactLOW
    Privileges RequiredNONE
    ScopeUNCHANGED
    User InteractionNONE
    Vector StringCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
    Exploitability Score2.8
    Impact Score4.7
    Source[email protected]
    TypeSecondary

    Links:

    Exploit-db
    Github