Improper Verification in Samsung Device Care Allows Bypass of Knox Guard
CVE-2026-21007

4.4MEDIUM

Key Information:

Vendor

Samsung

Vendor
CVE Published:
13 April 2026

What is CVE-2026-21007?

A lack of proper checks in Samsung's Device Care prior to an April 2026 update allows physical attackers to exploit the system and bypass the Knox Guard feature. This vulnerability poses a significant risk to device security, particularly in environments where physical access to devices is permitted.

Affected Version(s)

Samsung Mobile Devices SMR Apr-2026 Release in Android 14, 15, 16

References

CVSS V4

Score:
4.4
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.