Improper handling of insufficient permissions or privileges in Samsung Account prior to version 15.5.00.18 allows local attackers to access data in Samsung Account. User interaction is required for triggering this vulnerability.
References
| Link | Resource |
|---|---|
| https://security.samsungmobile.com/serviceWeb.smsb?year=2025&month=11 | Vendor Advisory |
Configurations
History
07 Nov 2025, 13:02
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | NVD-CWE-Other | |
| References | () https://security.samsungmobile.com/serviceWeb.smsb?year=2025&month=11 - Vendor Advisory | |
| First Time |
Samsung
Samsung account |
|
| CPE | cpe:2.3:a:samsung:account:*:*:*:*:*:*:*:* |
05 Nov 2025, 06:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-05 06:15
Updated : 2025-11-07 13:02
NVD link : CVE-2025-21076
Mitre link : CVE-2025-21076
CVE.ORG link : CVE-2025-21076
JSON object : View
Products Affected
samsung
- account
CWE
