Insufficient Data Verification in Samsung Smart Switch – Samsung
CVE-2026-21078

4.7MEDIUM

Key Information:

Vendor

Samsung

Vendor
CVE Published:
10 August 2026

What is CVE-2026-21078?

A vulnerability in Samsung's Smart Switch application allows adjacent attackers to exploit insufficient verification of data authenticity in the trouble scanning mode. Prior to version 3.7.72.6, this flaw enables malicious actors to potentially spoof device identities, creating opportunities for unauthorized access and data manipulation. Users are encouraged to update to the latest version to mitigate risks associated with this vulnerability.

Affected Version(s)

Smart Switch 3.7.72.6

References

CVSS V4

Score:
4.7
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.