Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to cause local file inclusion in webview.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/serviceWeb.smsb?year=2021&month=7 | Vendor Advisory |
https://security.samsungmobile.com/serviceWeb.smsb?year=2021&month=7 | Vendor Advisory |
Configurations
History
21 Nov 2024, 05:54
Type | Values Removed | Values Added |
---|---|---|
References | () https://security.samsungmobile.com/serviceWeb.smsb?year=2021&month=7 - Vendor Advisory |
Information
Published : 2021-07-08 14:15
Updated : 2024-11-21 05:54
NVD link : CVE-2021-25438
Mitre link : CVE-2021-25438
CVE.ORG link : CVE-2021-25438
JSON object : View
Products Affected
samsung
- members
- android
CWE