Improper Authorization in Smart Switch for Non-Samsung Devices
CVE-2025-20996
5MEDIUM
What is CVE-2025-20996?
A vulnerability exists in Smart Switch installed on non-Samsung devices prior to version 3.7.64.10, where improper authorization may allow local attackers to access sensitive data with the privileges of the Smart Switch app. User interaction is necessary to exploit this vulnerability, potentially compromising user data security.
Affected Version(s)
Smart Switch 3.7.64.10