VYPR
High severity8.6NVD Advisory· Published Apr 9, 2021· Updated Jun 17, 2026

CVE-2021-25374

CVE-2021-25374

Description

An improper authorization vulnerability in Samsung Members "samsungrewards" scheme for deeplink in versions 2.4.83.9 in Android O(8.1) and below, and 3.9.00.9 in Android P(9.0) and above allows remote attackers to access a user data related with Samsung Account.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Samsung Mobile/Samsung Membersllm-fuzzy2 versions
    2.4.83.9 (Android O(8.1) and below), 3.9.00.9 (Android P(9.0) and above)+ 1 more
    • (no CPE)range: 2.4.83.9 (Android O(8.1) and below), 3.9.00.9 (Android P(9.0) and above)
    • (no CPE)range: Android O(8.x) and below
  • cpe:2.3:a:samsung:members:*:*:*:*:*:*:*:*
    Range: <=2.4.83.9

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.