First published: Wed Dec 08 2021(Updated: )
Insecure storage of device information in Contacts prior to version 12.7.05.24 allows attacker to get Samsung Account ID.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Contacts | <12.7.05.24 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25524 has a medium severity level due to the potential exposure of sensitive user information.
To fix CVE-2021-25524, users should update the Samsung Contacts app to version 12.7.05.24 or later.
CVE-2021-25524 affects devices using Samsung Contacts prior to version 12.7.05.24.
An attacker could potentially access the Samsung Account ID due to insecure storage of device information.
CVE-2021-25524 is a software vulnerability related to the Samsung Contacts application.