CVE-2021-25507

Improper authorization vulnerability in Samsung Flow mobile application prior to 4.8.03.5 allows Samsung Flow PC application connected with user device to access part of notification data in Secure Folder without authorization.
Configurations

Configuration 1 (hide)

cpe:2.3:a:samsung:samsung_flow:*:*:*:*:*:android:*:*

History

21 Nov 2024, 05:55

Type Values Removed Values Added
References () https://security.samsungmobile.com/serviceWeb.smsb?year=2021&month=11 - Vendor Advisory () https://security.samsungmobile.com/serviceWeb.smsb?year=2021&month=11 - Vendor Advisory

Information

Published : 2021-11-05 03:15

Updated : 2024-11-21 05:55


NVD link : CVE-2021-25507

Mitre link : CVE-2021-25507

CVE.ORG link : CVE-2021-25507


JSON object : View

Products Affected

samsung

  • samsung_flow
CWE
CWE-285

Improper Authorization

NVD-CWE-Other