Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android Q(10.0) and above allows attacker to access contacts and file provider using SettingWebView component.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Samsung Mobile
Published: 2021-06-11T14:45:23
Updated: 2024-08-03T20:03:05.550Z
Reserved: 2021-01-19T00:00:00
Link: CVE-2021-25403
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-06-11T15:15:09.653
Modified: 2022-07-30T12:58:06.853
Link: CVE-2021-25403
Redhat
No data.