CVE-2025-21079

Improper input validation in Samsung Members prior to version 5.5.01.3 allows remote attackers to connect arbitrary URL and launch arbitrary activity with Samsung Members privilege. User interaction is required for triggering this vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:samsung:members:*:*:*:*:*:*:*:*

History

07 Nov 2025, 15:46

Type Values Removed Values Added
References () https://security.samsungmobile.com/serviceWeb.smsb?year=2025&month=11 - () https://security.samsungmobile.com/serviceWeb.smsb?year=2025&month=11 - Vendor Advisory
CWE NVD-CWE-noinfo
First Time Samsung members
Samsung
CPE cpe:2.3:a:samsung:members:*:*:*:*:*:*:*:*

05 Nov 2025, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-05 06:15

Updated : 2025-11-07 15:46


NVD link : CVE-2025-21079

Mitre link : CVE-2025-21079

CVE.ORG link : CVE-2025-21079


JSON object : View

Products Affected

samsung

  • members