cbcvebase.
CVE-2025-21078
published 2025-11-05

CVE-2025-21078: Use of insufficiently random value of secretKey in Smart Switch prior to version 3.7.68.6 allows adjacent attackers to access backup data from applications.

medium6.5CVSS 3.1
AVAACLPRNUINSUCHINAN
Use of insufficiently random value of secretKey in Smart Switch prior to version 3.7.68.6 allows adjacent attackers to access backup data from applications.

Affected

1 ranges
VendorProductVersion rangeFixed in
samsungsmart_switch< 3.7.68.63.7.68.6