CVE Published: 08/12/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021 Source: Samsung Mobile |
Vendor: Samsung Mobile |
Product: Samsung Internet Status : PUBLISHED
CVE-2021-25520 Description
Insecure caller check and input validation vulnerabilities in SearchKeyword deeplink logic prior to Samsung Internet 16.0.2 allows unstrusted applications to execute script codes in Samsung Internet.
Metrics
CVSS Version: 3.1 |
Base Score: 5.9 MEDIUM Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L