cbcvebase.
CVE-2021-25405
published 2021-06-11

CVE-2021-25405: An improper access control vulnerability in ScreenOffActivity in Samsung Notes prior to version 4.2.04.27 allows untrusted applications to access local files.

medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
An improper access control vulnerability in ScreenOffActivity in Samsung Notes prior to version 4.2.04.27 allows untrusted applications to access local files.

Affected

2 ranges
VendorProductVersion rangeFixed in
samsungnotes< 4.2.04.274.2.04.27
samsung_mobilesamsung_notes>= unspecified < 4.2.04.274.2.04.27