← Back

CVE-2025-21028

nvd nist
Published: Sep 3, 2025Modified: Sep 11, 2025

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Exploitability: 1.8 / Impact: 3.6
Source: mobile.security@samsung.com (Secondary)

Description

Improper privilege management in ThemeManager prior to SMR Sep-2025 Release 1 allows local privileged attackers to reuse trial items.

Affected (9)

Products: Samsung: Android
1 product
Android
Configuration A
9 vulnerable
Vulnerable SoftwareAffected Versions
Samsung
Version 15.0
Version 15.0 smr-apr-2025-r1
Version 15.0 smr-aug-2025-r1
Version 15.0 smr-jul-2025-r1
Version 15.0 smr-jun-2025-r1
Version 15.0 smr-mar-2025-r1
Version 15.0 smr-may-2025-r1
Version 16.0
Version 16.0 smr-aug-2025-r1

References (1)

Source: mobile.security@samsung.com
Vendor Advisory

Timeline

No history available yet.