CVE-2025-20968
published 2025-05-07CVE-2025-20968: Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows…
PriorityP354critical9.1CVSS 3.1
AVNACLPRNUINSUCHIHAN
EPSS
0.27%
18.4th percentile
Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows remote attackers to access data and perform internal operations within Samsung Gallery.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| samsung | gallery | < 14.5.10.3 | 14.5.10.3 |
| samsung | gallery | < 14.5.09.3 | 14.5.09.3 |
| samsung | gallery | < 15.5.04.5 | 15.5.04.5 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-05-07
Published