216.73.216.133

CVE-2025-21079

· Published 05/11/2025 06:15 · Modified 07/11/2025 15:46

Labels: CVE-2025-21079 2025-11-05CVE-2025-21079NVD-CWE-noinfo[email protected]

Essential information

Published
05/11/2025 06:15
Modified
07/11/2025 15:46
Author
Creator
CVSS
7.1 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H

CVSS metrics

Description

Improper input validation in Samsung Members prior to version 5.5.01.3 allows remote attackers to connect arbitrary URL and launch arbitrary activity with Samsung Members privilege. User interaction is required for triggering this vulnerability.

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
samsung / members cpe:2.3:a:samsung:members:*:*:*:*:*:*:*:*

References