Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to cause local file inclusion in webview.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/serviceWeb.smsb?year=2021&month=7 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: Samsung Mobile
Published: 2021-07-08T13:47:18
Updated: 2021-07-08T13:47:18
Reserved: 2021-01-19T00:00:00
Link: CVE-2021-25438
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-07-08T14:15:08.923
Modified: 2022-07-25T11:11:36.133
Link: CVE-2021-25438
JSON object: View
Redhat Information
No data.
CWE