VDB
CVE-2022-23425
CVE-2022-23425
PUBLISHED
CVSS 8.600000381469727 HIGH
Improper input validation in Exynos baseband prior to SMR Feb-2022 Release 1 allows attackers to send arbitrary NAS signaling messages with fake base station.
EPSS 0.41% · 34.9th percentile
Risk Scores
CVSS 3.1
8.600000381469727
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
EPSS Score
0.41%
34.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Samsung Mobile | Samsung Mobile Devices | * |
| android | 10.0, 11.0, 12.0 |
Timeline
- Feb 11, 2022 CVE Published
- Feb 12, 2022 EPSS Score
- Apr 6, 2022 EPSS Score
- May 28, 2022 EPSS Score
- Jul 21, 2022 EPSS Score
- Sep 11, 2022 EPSS Score
- Nov 3, 2022 EPSS Score
- Dec 26, 2022 EPSS Score
- Feb 16, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 10, 2023 EPSS Score
- Jun 2, 2023 EPSS Score