Improper Access Control in Galaxy Store by Samsung Products
CVE-2026-21000
7HIGH
What is CVE-2026-21000?
A vulnerability in the Galaxy Store prior to version 4.6.03.8 allows local attackers to exploit improper access control mechanisms. This security flaw enables an unauthorized user to create files with the same privileges as the Galaxy Store, potentially leading to unauthorized actions and data exposure. Users are advised to update their Galaxy Store application to the latest version to mitigate this risk.
Affected Version(s)
Galaxy Store 4.6.03.8