Samsung Galaxy Store Improper Intent Verification Vulnerability Allowing Arbitrary File Writing

Vulnerability

A vulnerability exists in Samsung Galaxy Store versions prior to 4.5.90.7, where improper verification of intent by the broadcast receiver allows local attackers to write arbitrary files with the privileges of Galaxy Store.

Impact

Exploitation of this vulnerability could lead to unauthorized file writing, potentially allowing for the manipulation or creation of files that could be used in further attacks or to disrupt normal application functionality.

Remediation

Users can update to Samsung Galaxy Store version 4.5.90.7 or later to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.