PT-2022-21818 · Samsung · Knox Guard

Rajesh

·

Published

2022-07-11

·

Updated

2023-06-29

·

CVE-2022-33702

CVSS v3.1

6.2

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Knoxguard versions prior to SMR Jul-2022 Release 1
Description The issue is related to an improper authorization vulnerability. It allows a local attacker to disable the keyguard and bypass the Knoxguard lock by performing a factory reset.
Recommendations For versions prior to SMR Jul-2022 Release 1, update to SMR Jul-2022 Release 1 or later to resolve the issue. As a temporary workaround, consider restricting access to the factory reset feature to minimize the risk of exploitation.

Fix

Improper Authorization

Weakness Enumeration

Related Identifiers

CVE-2022-33702

Affected Products

Knox Guard