6.8
/ 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:L
Description
Improper access control in ImsService prior to SMR Sep-2025 Release 1 allows local attackers to use the privileged APIs.
Basic Information
ID
CVE-2025-21031
Source
SamsungMobile
Published
Sep 3, 2025 at 06:05
Affected Product
Vendor
Samsung Mobile
Product
Samsung Mobile Devices
Version
SMR Sep-2025 Release in Android 13, 14, 15, 16