CVE-2021-25439: Low severity samsung members vulnerability
Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to cause arbitrary webpage loading in webview.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-25439?
CVE-2021-25439 is rated as a high severity vulnerability due to its potential to allow arbitrary webpage loading by untrusted applications.
How do I fix CVE-2021-25439?
To mitigate CVE-2021-25439, upgrade Samsung Members to version 2.4.85.11 or later for Android O or version 3.9.10.11 or later for Android P.
What devices are affected by CVE-2021-25439?
CVE-2021-25439 affects Samsung Members applications prior to version 2.4.85.11 for Android O and prior to version 3.9.10.11 for Android P.
What type of vulnerability is CVE-2021-25439?
CVE-2021-25439 is characterized as an improper access control vulnerability.
Can CVE-2021-25439 be exploited remotely?
Yes, CVE-2021-25439 can be exploited remotely by untrusted applications to manipulate webpage loading in webview.