cbcvebase.
CVE-2026-21000
published 2026-03-16

CVE-2026-21000: Improper access control in Galaxy Store prior to version 4.6.03.8 allows local attacker to create file with Galaxy Store privilege.

high7CVSS 4.0
AVLACLATNPRNUINVCNVIHVALSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
Improper access control in Galaxy Store prior to version 4.6.03.8 allows local attacker to create file with Galaxy Store privilege.

Affected

1 ranges
VendorProductVersion rangeFixed in
samsunggalaxy_store< 4.6.03.84.6.03.8