CVE-2021-25433

Severity
5.5MEDIUM
EPSS
0.0%
top 88.41%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 8
Latest updateMay 24

Description

Improper authorization vulnerability in Tizen factory reset policy prior to Firmware update JUL-2021 Release allows untrusted applications to perform factory reset using dbus signal.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

NVDlinux/tizen< 5.5
CVEListV5samsung_mobile/tizen_wearable_devicesTizen 5.5Firmware update JUL-2021 Release

🔴Vulnerability Details

2
GHSA
GHSA-78rr-8w79-72qw: Improper authorization vulnerability in Tizen factory reset policy prior to Firmware update JUL-2021 Release allows untrusted applications to perform2022-05-24
CVEList
CVE-2021-25433: Improper authorization vulnerability in Tizen factory reset policy prior to Firmware update JUL-2021 Release allows untrusted applications to perform2021-07-08
CVE-2021-25433 (MEDIUM CVSS 5.5) | Improper authorization vulnerabilit | cvebase.io