5.4
CVE-2025-20939
- EPSS 0.06%
- Veröffentlicht 08.04.2025 04:49:41
- Zuletzt bearbeitet 27.01.2026 17:54:54
- Quelle mobile.security@samsung.com
- CVE-Watchlists
- Unerledigt
Improper authorization in wireless download protocol in Galaxy Watch prior to SMR Apr-2025 Release 1 allows physical attackers to update device unique identifier of Watch devices.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Samsung ≫ Wear Os Version5.0
Samsung ≫ Galaxy Watch Version-
Samsung ≫ Galaxy Watch 4 Version-
Samsung ≫ Galaxy Watch 4 Classic Version-
Samsung ≫ Galaxy Watch 5 Version-
Samsung ≫ Galaxy Watch 5 Pro Version-
Samsung ≫ Galaxy Watch 6 Version-
Samsung ≫ Galaxy Watch 6 Classic Version-
Samsung ≫ Galaxy Watch 7 Version-
Samsung ≫ Galaxy Watch Fe Version-
Samsung ≫ Galaxy Watch Ultra Version-
Samsung ≫ Galaxy Watch 4 Version-
Samsung ≫ Galaxy Watch 4 Classic Version-
Samsung ≫ Galaxy Watch 5 Version-
Samsung ≫ Galaxy Watch 5 Pro Version-
Samsung ≫ Galaxy Watch 6 Version-
Samsung ≫ Galaxy Watch 6 Classic Version-
Samsung ≫ Galaxy Watch 7 Version-
Samsung ≫ Galaxy Watch Fe Version-
Samsung ≫ Galaxy Watch Ultra Version-
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.06% | 0.185 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| mobile.security@samsung.com | 5.4 | 0.7 | 4.7 |
CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:L/I:H/A:L
|