Improper input validation in Samsung Members prior to version 5.5.01.3 allows remote attackers to connect arbitrary URL and launch arbitrary activity with Samsung Members privilege. User interaction is required for triggering this vulnerability.
Metrics
Affected Vendors & Products
References
History
Fri, 07 Nov 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Samsung members
|
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:samsung:members:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Samsung members
|
Thu, 06 Nov 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Samsung
Samsung samsung Members |
|
| Vendors & Products |
Samsung
Samsung samsung Members |
Wed, 05 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 05 Nov 2025 06:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper input validation in Samsung Members prior to version 5.5.01.3 allows remote attackers to connect arbitrary URL and launch arbitrary activity with Samsung Members privilege. User interaction is required for triggering this vulnerability. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: SamsungMobile
Published: 2025-11-05T05:41:01.576Z
Updated: 2025-11-05T17:09:18.091Z
Reserved: 2024-11-06T02:30:14.896Z
Link: CVE-2025-21079
Updated: 2025-11-05T17:09:14.535Z
Status : Analyzed
Published: 2025-11-05T06:15:34.227
Modified: 2025-11-07T15:46:21.677
Link: CVE-2025-21079
No data.