Improper Input Validation in FacAtFunction Affects Samsung Product
CVE-2026-20981
5.4MEDIUM
What is CVE-2026-20981?
An improper input validation vulnerability in FacAtFunction allows a privileged physical attacker to execute arbitrary commands with system-level privileges. This flaw could lead to unauthorized control over system operations, posing significant security risks and affecting the integrity of sensitive data.
Affected Version(s)
Samsung Mobile Devices SMR Feb-2026 Release in Android 14, 15, 16