CVE-2021-25355: High severity samsung notes vulnerability
Published Mar 25, 2021
·Updated
Using unsafe PendingIntent in Samsung Notes prior to version 4.2.00.22 allows local attackers unauthorized action without permission via hijacking the PendingIntent.
Affected Software
1 affected component
Samsung Notes<4.2.00.22
Event History
Mar 25, 2021
CVE Published
via MITRE·04:13 PM
Data Sourced
via MITRE·04:13 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-25355.
2
What is the severity of CVE-2021-25355?
The severity of CVE-2021-25355 is high with a CVSS score of 7.8.
3
Which software versions are affected by CVE-2021-25355?
Samsung Notes prior to version 4.2.00.22 is affected by CVE-2021-25355.
4
How can local attackers exploit CVE-2021-25355?
Local attackers can exploit CVE-2021-25355 by hijacking the PendingIntent and performing unauthorized actions without permission.
5
Where can I find more information about CVE-2021-25355?
You can find more information about CVE-2021-25355 on the Samsung Mobile Security website.