Authentication Bypass Using an Alternate Path in Galaxy Store prior to version 4.5.87.6 allows physical attackers to install arbitrary applications to bypass restrictions of Setupwizard.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/serviceWeb.smsb?year=2025&month=01 | Vendor Advisory |
Configurations
History
17 Jul 2025, 20:05
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:samsung:galaxy_store:*:*:*:*:*:*:*:* | |
First Time |
Samsung
Samsung galaxy Store |
|
CWE | NVD-CWE-Other | |
References | () https://security.samsungmobile.com/serviceWeb.smsb?year=2025&month=01 - Vendor Advisory | |
Summary |
|
04 Feb 2025, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-02-04 08:15
Updated : 2025-07-17 20:05
NVD link : CVE-2025-20895
Mitre link : CVE-2025-20895
CVE.ORG link : CVE-2025-20895
JSON object : View
Products Affected
samsung
- galaxy_store
CWE