CVE-2025-20996
5.0
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N
Exploitability: 1.3 / Impact: 3.6
Source: mobile.security@samsung.com (Secondary)
Description
Improper authorization in Smart Switch installed on non-Samsung Device prior to version 3.7.64.10 allows local attackers to read data with the privilege of Smart Switch. User interaction is required for triggering this vulnerability.
Affected (1)
Products: Samsung: Smart Switch
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.7.64.10 |
References (1)
Source: mobile.security@samsung.com
Vendor Advisory
Timeline
No history available yet.