CVE-2021-25527: Low severity samsung pay vulnerability
Published Dec 8, 2021
·Updated
Improper export of Android application components vulnerability in Samsung Pay (India only) prior to version 4.1.77 allows attacker to access Bill Pay and Recharge menu without authentication.
Affected Software
1 affected component
Samsung Pay<4.1.77
Event History
Dec 8, 2021
CVE Published
via MITRE·02:20 PM
Data Sourced
via MITRE·02:20 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-25527?
CVE-2021-25527 has a high severity rating as it allows unauthorized access to sensitive features in Samsung Pay.
2
How do I fix CVE-2021-25527?
To fix CVE-2021-25527, update your Samsung Pay application to version 4.1.77 or later.
3
Which versions of Samsung Pay are affected by CVE-2021-25527?
CVE-2021-25527 affects Samsung Pay versions prior to 4.1.77.
4
What specific vulnerability does CVE-2021-25527 exploit?
CVE-2021-25527 exploits improper export of Android application components, allowing unauthorized access.
5
Is CVE-2021-25527 applicable only in certain regions?
Yes, CVE-2021-25527 is specific to Samsung Pay in India.