CVE-2026-21004

MEDIUM

Samsung Mobile Smart Switch < 3.7.69.15 - Denial of Service via Improper Authentication

Title source: llm
STIX 2.1

Description

Improper authentication in Smart Switch prior to version 3.7.69.15 allows adjacent attackers to trigger a denial of service.

Scores

CVSS v3 6.5
EPSS 0.0007
EPSS Percentile 20.8%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-287
Status published
Products (2)
samsung/smart_switch < 3.7.69.15
Samsung Mobile/Smart Switch 3.7.69.15
Published Mar 16, 2026
Tracked Since Mar 16, 2026