First published: Thu Mar 25 2021(Updated: )
Improper access control in Samsung Internet prior to version 13.2.1.70 allows physically proximate attackers to bypass the secret mode's authentication.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Internet | <13.2.1.70 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25366 refers to an improper access control vulnerability in Samsung Internet prior to version 13.2.1.70.
Physically proximate attackers can exploit CVE-2021-25366 to bypass the secret mode's authentication.
Samsung Internet versions up to and excluding 13.2.1.70 are affected by CVE-2021-25366.
CVE-2021-25366 has a severity level of low.
More information about CVE-2021-25366 can be found at the Samsung Mobile Security website.