9.1

CVE-2025-20967

Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows attackers to read and write arbitrary file with the privilege of Samsung Gallery.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Samsung ≫ Gallery Version < 14.5.10.3
   Samsung ≫ Android Version 13.0 Update -
Samsung ≫ Gallery Version < 14.5.09.3
   Samsung ≫ Android Version 13.0 Update -
Samsung ≫ Gallery Version < 15.5.04.5
   Samsung ≫ Android Version 14.0 Update -
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.105
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 9.1 3.9 5.2
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
mobile.security@samsung.com 5.1 2.5 2.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://security.samsungmobile.com/serviceWeb.smsb?year=2025&month=05
Vendor Advisory