Vulnerabilities > CVE-2021-25403 - Unspecified vulnerability in Samsung Account 10.7.07/12.2.0.9

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
local
low complexity
samsung

Summary

Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android Q(10.0) and above allows attacker to access contacts and file provider using SettingWebView component.

Vulnerable Configurations

Part Description Count
Application
Samsung
3
OS
Google
1