Improper Access Control vulnerability in Galaxy Store prior to version 4.5.53.6 allows local attacker to access protected data using exported service.
History

Tue, 09 Sep 2025 16:30:00 +0000

Type Values Removed Values Added
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:a:samsung:galaxy_store:*:*:*:*:*:*:*:*

Thu, 04 Sep 2025 09:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 03 Sep 2025 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Samsung
Samsung galaxy Store
Vendors & Products Samsung
Samsung galaxy Store

Wed, 03 Sep 2025 05:30:00 +0000

Type Values Removed Values Added
Description Improper Access Control vulnerability in Galaxy Store prior to version 4.5.53.6 allows local attacker to access protected data using exported service.
References
Metrics cvssV3_1

{'score': 6.4, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: SamsungMobile

Published: 2025-09-03T05:17:15.644Z

Updated: 2025-09-03T20:11:38.981Z

Reserved: 2022-11-14T08:58:53.183Z

Link: CVE-2023-21483

cve-icon Vulnrichment

Updated: 2025-09-03T20:00:24.288Z

cve-icon NVD

Status : Analyzed

Published: 2025-09-03T06:15:44.140

Modified: 2025-09-09T16:23:40.953

Link: CVE-2023-21483

cve-icon Redhat

No data.