Unknown · Contents To Window · CVE-2022-28782
**Name of the Vulnerable Software and Affected Versions**
Contents To Window versions prior to SMR May-2022 Release 1
**Description**
The issue is related to improper access control, allowing a physical attacker to install a package before the completion of the Setup wizard. This can be exploited by a physical attacker.
**Recommendations**
For versions prior to SMR May-2022 Release 1, apply the patch that blocks the entry point of the vulnerability to resolve the issue.