CVE-2021-25375

MEDIUM

Samsung Email <6.1.41.0 - Info Disclosure

Title source: llm
STIX 2.1

Description

Using predictable index for attachments in Samsung Email prior to version 6.1.41.0 allows remote attackers to get attachments of another emails when users open the malicious attachment.

Scores

CVSS v3 6.5
EPSS 0.0036
EPSS Percentile 58.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Details

CWE
CWE-330 CWE-200
Status published
Products (1)
samsung/email < 6.1.14.0
Published Apr 09, 2021
Tracked Since Feb 18, 2026