← Back

CVE-2021-25351

nvd nist
Published: Mar 25, 2021Modified: Nov 21, 2024

JSON object

Loading...
2.4
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Exploitability: 0.9 / Impact: 1.4
Source: NVD

Description

Improper Access Control in EmailValidationView in Samsung Account prior to version 10.7.0.7 and 12.1.1.3 allows physically proximate attackers to log out user account on device without user password.

Affected (2)

Products: Samsung: Account
1 product
Account
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 10.7.07
Running on/withPlatform Versions
Google
Android
Version 9.0
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 12.1.1.3
Running on/withPlatform Versions
Google
Android
Version 10.0

References (4)

Source: mobile.security@samsung.com
Vendor Advisory
Source: mobile.security@samsung.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.