Improper Access Control in Samsung Mobile's SecSettings
CVE-2025-21049
5.5MEDIUM
What is CVE-2025-21049?
The vulnerability in Samsung Mobile's SecSettings arises from improper access control mechanisms that allow local attackers to gain unauthorized access to sensitive information. This issue is triggered by user interaction, making it essential for users to be aware of their app usage to mitigate potential exposure until a patch is applied. Affected versions include those prior to the SMR Oct-2025 Release 1.
Affected Version(s)
Samsung Mobile Devices SMR Oct-2025 Release in Android 15, 16