Medium severity6.2NVD Advisory· Published May 7, 2025· Updated Jun 17, 2026
CVE-2025-20972
CVE-2025-20972
Description
Improper verification of intent by broadcast receiver in Samsung Flow prior to version 4.9.17.6 allows local attackers to modify Samsung Flow configuration.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:samsung:flow:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:samsung:flow:*:*:*:*:*:*:*:*range: <4.9.17.6
- (no CPE)range: <4.9.17.6
- Range: 4.9.17.6
Patches
Vulnerability mechanics
References
1- security.samsungmobile.com/serviceWeb.smsbnvdVendor Advisory
News mentions
0No linked articles in our index yet.