Lucene search

K
cvelistSamsung MobileCVELIST:CVE-2021-25446
HistoryAug 05, 2021 - 7:43 p.m.

CVE-2021-25446

2021-08-0519:43:49
CWE-284
Samsung Mobile
www.cve.org
6
smartthings
access control
untrusted applications
arbitrary webpage loading

AI Score

5.7

Confidence

High

EPSS

0.001

Percentile

42.9%

Improper access control vulnerability in SmartThings prior to version 1.7.67.25 allows untrusted applications to cause arbitrary webpage loading in webview.

CNA Affected

[
  {
    "product": "Smart Things",
    "vendor": "Samsung Mobile",
    "versions": [
      {
        "lessThan": "1.7.67.25",
        "status": "affected",
        "version": "-",
        "versionType": "custom"
      }
    ]
  }
]

AI Score

5.7

Confidence

High

EPSS

0.001

Percentile

42.9%

Related for CVELIST:CVE-2021-25446