CVE Published: 04/03/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021 Source: Samsung Mobile |
Vendor: Samsung Mobile |
Product: Samsung Members Status : PUBLISHED
CVE-2021-25343 Description
Calling of non-existent provider in Samsung Members prior to version 2.4.81.13 (in Android O(8.1) and below) and 3.8.00.13 (in Android P(9.0) and above) allows unauthorized actions including denial of service attack by hijacking the provider.
Metrics
CVSS Version: 3.1 |
Base Score: 4 MEDIUM Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L