7.1
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H
Description
Improper input validation in Samsung Members prior to version 5.5.01.3 allows remote attackers to connect arbitrary URL and launch arbitrary activity with Samsung Members privilege. User interaction is required for triggering this vulnerability.
Basic Information
ID
CVE-2025-21079
Source
SamsungMobile
Published
Nov 5, 2025 at 05:41
Affected Product
Vendor
Samsung Mobile
Product
Samsung Members
Version
5.5.01.3