Samsung PackageInstallerCN Insufficient Permission Vulnerability Allowing Installation Bypass

Vulnerability

A vulnerability exists in Samsung PackageInstallerCN prior to version 15.0.11.0, where improper handling of insufficient permissions allows local attackers to bypass user interaction for installation requests.

Impact

Exploitation of this vulnerability could lead to unauthorized application installations without user consent.

Remediation

Users can update to version 15.0.11.0 or later to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
6.6
impact
2.5
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.