Vulnerabilities > CVE-2018-21039 - Incorrect Authorization vulnerability in Google Android 7.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
An issue was discovered on Samsung mobile devices with N(7.0) software. With the Location permission for the compass feature in Quick Tools (aka QuickTools), an attacker can bypass the lockscreen. The Samsung ID is SVE-2018-12053 (December 2018).
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 1 |