
Cloud Vulnerability DB
A community-led vulnerabilities database
Improper Authorization vulnerability in setDualDARPolicyCmd prior to SMR Sep-2022 Release 1 allows local attackers to cause local permanent denial of service. This vulnerability was assigned CVE-2022-36848 and was disclosed in September 2022 (NVD).
The vulnerability is classified as an Improper Authorization issue (CWE-285) that affects the setDualDARPolicyCmd component. The vulnerability allows unauthorized access to system components that should require proper authorization controls (NVD CNA Status).
The vulnerability can lead to a local permanent denial of service condition when successfully exploited by local attackers (NVD).
The vulnerability was addressed in the Samsung Mobile Security Maintenance Release (SMR) Sep-2022 Release 1. Users should update their devices to this or later security patch levels to mitigate the vulnerability (Samsung Mobile Security).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."