5.5
/ 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Description
Improper handling of insufficient permissions or privileges in Samsung Account prior to version 15.5.00.18 allows local attackers to access data in Samsung Account. User interaction is required for triggering this vulnerability.
Basic Information
ID
CVE-2025-21076
Source
SamsungMobile
Published
Nov 5, 2025 at 05:40
Affected Product
Vendor
Samsung Mobile
Product
Samsung Account
Version
15.5.00.18