Improper Access Control in Samsung Galaxy Watch Products
CVE-2025-21023
3.3LOW
What is CVE-2025-21023?
An access control issue in the WcsExtension component of Samsung Galaxy Watch devices prior to Android Watch 16 enables local attackers to gain unauthorized access to sensitive information. This vulnerability highlights the potential risks of improper security mechanisms that may expose user data under certain conditions.
Affected Version(s)
WcsExtension for Galaxy Watch Android Watch 16