CVE-2021-25366

LOW

Samsung Internet <13.2.1.70 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Improper access control in Samsung Internet prior to version 13.2.1.70 allows physically proximate attackers to bypass the secret mode's authentication.

Scores

CVSS v3 3.2
EPSS 0.0007
EPSS Percentile 21.1%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:H/PR:H/UI:R/S:C/C:L/I:L/A:N

Details

CWE
CWE-703
Status published
Products (1)
samsung/internet < 13.2.1.70
Published Mar 25, 2021
Tracked Since Feb 18, 2026