First published: Wed Dec 08 2021(Updated: )
Improper export of Android application components vulnerability in Samsung Pay (India only) prior to version 4.1.77 allows attacker to access Bill Pay and Recharge menu without authentication.
Credit: mobile.security@samsung.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Pay | <4.1.77 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25527 has a high severity rating as it allows unauthorized access to sensitive features in Samsung Pay.
To fix CVE-2021-25527, update your Samsung Pay application to version 4.1.77 or later.
CVE-2021-25527 affects Samsung Pay versions prior to 4.1.77.
CVE-2021-25527 exploits improper export of Android application components, allowing unauthorized access.
Yes, CVE-2021-25527 is specific to Samsung Pay in India.