CVE Published: 25/03/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021 Source: Samsung Mobile |
Vendor: Samsung Mobile |
Product: Galaxy Themes Status : PUBLISHED
CVE-2021-25353 Description
Using empty PendingIntent in Galaxy Themes prior to version 5.2.00.1215 allows local attackers to read/write private file directories of Galaxy Themes application without permission via hijacking the PendingIntent.
Metrics
CVSS Version: 3.1 |
Base Score: 5.5 MEDIUM Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N