CVE-2021-25419Improper Check or Handling of Exceptional Conditions in Mobile Samsung Internet

Severity
6.5MEDIUMNVD
EPSS
0.4%
top 40.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 11
Latest updateMay 24

Description

Non-compliance of recommended secure coding scheme in Samsung Internet prior to version 14.0.1.62 allows attackers to display fake URL in address bar via phising URL link.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

NVDsamsung/internet< 14.0.1.62
CVEListV5samsung_mobile/samsung_internetunspecified14.0.1.62

🔴Vulnerability Details

2
GHSA
GHSA-57vf-87qf-8c9c: Non-compliance of recommended secure coding scheme in Samsung Internet prior to version 142022-05-24
CVEList
CVE-2021-25419: Non-compliance of recommended secure coding scheme in Samsung Internet prior to version 142021-06-11
CVE-2021-25419 — Mobile Samsung Internet vulnerability | cvebase