CVE-2024-20894
MEDIUMSamsung Android - Improper Exception Handling
Title source: ruleDescription
Improper handling of exceptional conditions in Secure Folder prior to SMR Jul-2024 Release 1 allows physical attackers to bypass authentication under certain condition. User interaction is required for triggering this vulnerability.
Scores
CVSS v3
4.3
EPSS
0.0002
EPSS Percentile
5.1%
Attack Vector
PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Classification
CWE
CWE-755
Status
published
Affected Products (50)
samsung/android
samsung/android
samsung/android
samsung/android
samsung/android
samsung/android
samsung/android
samsung/android
samsung/android
samsung/android
samsung/android
samsung/android
samsung/android
samsung/android
samsung/android
... and 35 more
Timeline
Published
Jul 02, 2024
Tracked Since
Feb 18, 2026