CVE-2020-28340: Critical severity android vulnerability
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. Attackers can bypass Factory Reset Protection (FRP) via Secure Folder. The Samsung ID is SVE-2020-18546 (November 2020).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-28340?
CVE-2020-28340 has a high severity rating as it allows attackers to bypass Factory Reset Protection through the Secure Folder.
How do I fix CVE-2020-28340?
To fix CVE-2020-28340, ensure your Samsung device software is updated to the latest version provided by Samsung.
Which devices are affected by CVE-2020-28340?
CVE-2020-28340 affects Samsung mobile devices running Android versions 8.0, 8.1, 9.0, 10.0, and 11.0.
Can CVE-2020-28340 be exploited remotely?
Yes, CVE-2020-28340 can be exploited by an attacker who has physical access to the affected device.
What does CVE-2020-28340 target specifically?
CVE-2020-28340 specifically targets the Factory Reset Protection feature that is supposed to secure devices after a factory reset.