Improper Verification of Intent in Samsung Flow Vulnerabilty
CVE-2025-20972
6.2MEDIUM
What is CVE-2025-20972?
A security flaw in Samsung Flow prior to version 4.9.17.6 permits local attackers to alter the configuration settings of the application. This vulnerability arises from improper verification of intent by the broadcast receiver, potentially allowing unauthorized modifications that could impact the application's functionality and user experience. Users are advised to update to a secure version to mitigate this risk.
Affected Version(s)
Samsung Flow 4.9.17.6