CVE-2025-20898: Input Validation
Published Feb 4, 2025
·Updated
Improper input validation in Samsung Members prior to version 5.2.00.12 allows physical attackers to access data across multiple user profiles.
Affected Software
2 affected components
Samsung Members<5.2.00.12
Samsung Members<5.2.00.12
Event History
Feb 4, 2025
CVE Published
via MITRE·07:19 AM
Data Sourced
via MITRE·07:19 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-20898?
CVE-2025-20898 is classified as a high severity vulnerability due to improper input validation.
2
How do I fix CVE-2025-20898?
To mitigate CVE-2025-20898, update Samsung Members to version 5.2.00.12 or later.
3
Who is affected by CVE-2025-20898?
CVE-2025-20898 affects users of Samsung Members prior to version 5.2.00.12.
4
What type of attack does CVE-2025-20898 enable?
CVE-2025-20898 allows physical attackers to access data across multiple user profiles.
5
When was CVE-2025-20898 disclosed?
CVE-2025-20898 was disclosed in January 2025.