In Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000, there is an improper access control vulnerability related to a log file.
References
| Link | Resource |
|---|---|
| https://semiconductor.samsung.com/support/quality-support/product-security-updates/ | Vendor Advisory |
| https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2025-48025/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
Configuration 4 (hide)
| AND |
|
Configuration 5 (hide)
| AND |
|
Configuration 6 (hide)
| AND |
|
Configuration 7 (hide)
| AND |
|
Configuration 8 (hide)
| AND |
|
Configuration 9 (hide)
| AND |
|
Configuration 10 (hide)
| AND |
|
History
28 Oct 2025, 19:36
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:samsung:exynos_1480_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_980_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_w1000_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1280_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1580_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1380:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_w1000:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_w920:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_w920_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_850_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_w930:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1480:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_850:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1580:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1280:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_w930_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1380_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_1330:-:*:*:*:*:*:*:* cpe:2.3:h:samsung:exynos_980:-:*:*:*:*:*:*:* cpe:2.3:o:samsung:exynos_1330_firmware:-:*:*:*:*:*:*:* |
|
| References | () https://semiconductor.samsung.com/support/quality-support/product-security-updates/ - Vendor Advisory | |
| References | () https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2025-48025/ - Vendor Advisory | |
| First Time |
Samsung exynos W920
Samsung exynos W930 Firmware Samsung exynos 850 Samsung exynos 980 Firmware Samsung exynos 850 Firmware Samsung exynos 1580 Samsung exynos 1330 Firmware Samsung exynos W920 Firmware Samsung exynos 1330 Samsung exynos W1000 Firmware Samsung exynos 980 Samsung exynos 1480 Firmware Samsung exynos 1480 Samsung exynos W1000 Samsung exynos 1380 Firmware Samsung Samsung exynos 1580 Firmware Samsung exynos W930 Samsung exynos 1280 Samsung exynos 1380 Samsung exynos 1280 Firmware |
21 Oct 2025, 20:20
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.3 |
| CWE | CWE-284 |
21 Oct 2025, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) In Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1280, 1330, 1380, 1480, 1580, W920, W930, and W1000, there is an improper access control vulnerability related to a log file. |
20 Oct 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-20 16:15
Updated : 2025-10-28 19:36
NVD link : CVE-2025-48025
Mitre link : CVE-2025-48025
CVE.ORG link : CVE-2025-48025
JSON object : View
Products Affected
samsung
- exynos_1480_firmware
- exynos_1580_firmware
- exynos_850
- exynos_w930
- exynos_980_firmware
- exynos_980
- exynos_w920
- exynos_w1000
- exynos_1330
- exynos_1480
- exynos_w930_firmware
- exynos_1380
- exynos_1330_firmware
- exynos_w1000_firmware
- exynos_1280_firmware
- exynos_w920_firmware
- exynos_850_firmware
- exynos_1580
- exynos_1280
- exynos_1380_firmware
CWE
CWE-284
Improper Access Control
