CVE-2025-21062

HIGH

Samsung Smart Switch < 3.7.67.2 - Broken Cryptographic Algorithm

Title source: rule
STIX 2.1

Description

Use of a broken or risky cryptographic algorithm in Smart Switch prior to version 3.7.67.2 allows local attackers to replace the restoring application. User interaction is required for triggering this vulnerability.

Scores

CVSS v3 7.8
EPSS 0.0001
EPSS Percentile 0.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-327
Status published
Products (1)
samsung/smart_switch < 3.7.67.2
Published Oct 10, 2025
Tracked Since Feb 18, 2026