6.5
CVE-2025-58488
- EPSS 0.42%
- Veröffentlicht 02.12.2025 01:24:35
- Zuletzt bearbeitet 26.09.2026 00:10:00
- Erkennungen
Improper verification of source of a communication channel in SmartTouchCall prior to version 1.0.1.1 allows remote attackers to access sensitive information. User interaction is required for triggering this vulnerability.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Samsung ≫ Smart Touch Call Version 1.0.1.1
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.42% | 0.35 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 6.5 | 2.8 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
|
| mobile.security@samsung.com | 4.5 | 0.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N
|
https://security.samsungmobile.com/serviceWeb.smsb?year=2025&month=12