Back

MEDIUM

Improper handling of insufficient permissions or privileges in Samsung Account prior to version 15.5.00.18 allows local attackers to access data in Samsung Account

Published Nov 5, 2025

Description

Improper handling of insufficient permissions or privileges in Samsung Account prior to version 15.5.00.18 allows local attackers to access data in Samsung Account. User interaction is required for triggering this vulnerability.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (0)

No CWE recorded.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner SamsungMobile
Published Nov 5, 2025
Updated Nov 7, 2025
Reserved Nov 6, 2024
CISA Vulnrichment
Updated Nov 5, 2025
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner SamsungMobile
Published Nov 5, 2025
Updated Nov 7, 2025
Exploited since n/a
EUVD-2025-37798