CVE-2021-25403

CVE-2021-25403

Vendor Samsung Mobile
Product Samsung Account
Weakness CWE-200 · Info exposure
Published June 11, 2021
Last update August 3, 2024

CVSS base score

What the vulnerability does

01Description

Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android Q(10.0) and above allows attacker to access contacts and file provider using SettingWebView component.

Key dates

02Disclosure timeline

June 11, 2021 CVE published
August 3, 2024 Record updated